---
title: Authentication Basics
slug: authentication-basics
docTags: 
createdAt: 2020-11-17T04:37:38.000Z
---

API authentication uses a private\_key and public\_key combination that are sent as query parmamters with every request.

To find out how to retrieve your keys from click here:[Pathfix keys](docId\:i5bP9DypNtQUAKv2r8Mbh)  &#x20;



```curl
curl --request GET
  --url https://labs.pathfix.com/api/...?public_key=[]&private_key=[] 
  --header 'Accept: application/json'
```

## Server Side API Calls

We recommend using only server side API calls, where the private key is not exposed.&#x20;



## Browser Based Client Side API Calls

Only use this while in development/sandbox mode. We do not recommend this method as the keys are visible using developer tools and you information can be potentially compromised.&#x20;

