Reference

Headers

Request and response headers used by the APIHiver gateway.

Headers you send

HeaderRequiredPurpose
X-API-KeyYesYour API key. The gateway removes it before forwarding, so providers never see it.
Content-TypeFor requests with a bodyFor example application/json or multipart/form-data.

Any other headers you send (for example Accept) are passed to the provider unchanged.

Headers you receive

In addition to the provider's own response headers:

HeaderMeaning
X-Request-IdA unique ID for this call. Quote it when asking for help.
X-RateLimit-Quota-LimitYour plan's requests per billing month.
X-RateLimit-Quota-RemainingRequests left this month.
X-RateLimit-Quota-ResetSeconds until the quota resets.
X-RateLimit-Requests-LimitRequests allowed per rate-limit window (plans with a rate limit only).
X-RateLimit-Requests-RemainingRequests left in the current window.
X-RateLimit-Requests-ResetSeconds until the window resets.

Headers providers receive

Providers get these extra headers on every forwarded request, so they can identify the caller without handling keys. See Gateway and security.

HeaderValue
X-APIHiver-Request-IdThe same ID the consumer sees as X-Request-Id
X-APIHiver-Consumer-IdThe consumer's user ID
X-APIHiver-Consumer-UsernameThe consumer's username
X-APIHiver-Subscription-IdThe subscription being billed
X-APIHiver-PlanThe consumer's plan name
secret headerThe provider's own secret, configured in Gateway

Something unclear or missing? Email [email protected].