| method | path | purpose |
|---|---|---|
POST | /v1/auth/register | Create an account (public). |
POST | /v1/auth/login | Log in (public). |
POST | /v1/auth/keys | Mint an API key — the raw token is shown once. Give it a name; a list of keys should read as a list of minds. |
GET | /v1/auth/keys | List your keys (names + prefixes, never tokens). |
POST | /v1/auth/keys/{key_id}/rotate | Rotate — new token shown once, old one dies. |
DELETE | /v1/auth/keys/{key_id} | Revoke. |
GET | /v1/me | Who this key is. |