Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I wonder why this has API keys at all? Maybe so they can keep logs of who is using the API and for what purpose.


It also helps when trying to put limits on greedy users or maintain a ban-list. Attribution is also important, like you said. Granted, an abusive user could just keep creating new keys, but if they require something like email verification then it's a little bit costlier to circumvent than nothing.

EDIT: Based on other comments, there's no email verification.


There isn't currently, but they could add whatever requirements to generate new keys in the future they want. If they didn't have keys that would break every existing client.




Consider applying for YC's Fall 2026 batch! Applications are open till July 27.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: