Authentication
6 min
The EAI supports two authentication methods. Both are fully supported — choose the method that best fits your integration architecture.
OAuth2 Bearer Token
Use the OAuth2 Client Credentials grant to obtain a time-limited access token.
Step 1: Request a Token
Call the token endpoint with HTTP Basic Auth using your EAI username and client secret:
curl -X POST https://yourcompany.teleskope.io/1/eai/oauth2/token.php \
-u "your_username:your_client_secret" \
-H "Content-Type: application/x-www-form-urlencoded" \
-d "scope=graph"Scope values:
- graph — Access to the Graph API endpoints
- uploader — Access to the Uploader endpoint
Step 2: Use the Token
Include the token in subsequent requests via the Authorization header:
curl -X GET "https://yourcompany.teleskope.io/1/eai/graph.php?listZonesOfAppType=affinities" \
-H "Authorization: Bearer eyJhbGciOiJI..."Token Response
{
"access_token": "eyJhbGciOiJI...",
"token_type": "Bearer",
"expires_in": 86400,
"scope": "graph"
}Token Limits
- Tokens expire after 24 hours (86,400 seconds)
- A maximum of 10 active tokens are allowed per account
- When the limit is reached, you must wait for existing tokens to expire before generating new ones
HTTP Basic Auth
Send your EAI username and password directly via HTTP Basic Auth on each request. No token management is required.
curl -X GET "https://yourcompany.teleskope.io/1/eai/graph.php?listZonesOfAppType=affinities" \
-u "your_username:your_password"Obtaining Credentials
EAI credentials (username and password/client secret) are provisioned by your Teleskope account manager. Each EAI account is scoped to a specific module (Graph or Uploader) and company tenant.
Important:
- Do not share credentials across environments or systems
- Store credentials securely (e.g., in a secrets manager or environment variables)
- Rotate credentials periodically through your account manager