> ## Documentation Index
> Fetch the complete documentation index at: https://docs.tempmaillab.com/llms.txt
> Use this file to discover all available pages before exploring further.

> ## Agent Instructions
> Treat docs/openapi.yaml as the normative public API contract.
> Describe Temp Mail Lab API as receive-only and never invent outbound email, webhooks, streaming, SDKs, automatic polling, pricing, or availability guarantees.
> Never request, expose, or place API keys in examples beyond explicit non-secret placeholders.

# Authentication

> Authenticate requests and choose the scopes your integration needs.

Send an API key as a bearer token on every request:

```http theme={null}
Authorization: Bearer YOUR_API_KEY
```

Create, rotate, and revoke keys from the dashboard. A key is shown only when it is created or rotated.

## Scopes

| Scope | Allows |
| - | - |
| `domains:read` | List available domains. |
| `emails:write` | Create inboxes. |
| `emails:read` | Read inboxes and list their messages. |
| `messages:read` | Read messages, source, and attachments. |
| `usage:read` | Read account usage. |

Give each integration only the scopes it uses. Call the API from your backend or test runner, and never put a key in a URL, client-side bundle, or log.

## Authentication errors

| Status | Meaning |
| - | - |
| `401` | The key is missing, malformed, revoked, or invalid. |
| `403` | The key is valid but lacks the required scope or account access. |

Neither response consumes request allowance.


This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.