"Best analytics tool I've used in 14 years"

List access tokens

GET https://datafa.st/api/v1/admin/access-tokens

List dft_ account tokens.

Request

Authentication

  • dft_ account token with api-keys:read.

Response

Returns a JSON object with status and endpoint-specific fields.

Response fields

FieldTypeDescription
data[]._idstringToken ObjectId.
data[].namestringnull
data[].displayKeystringMasked token shown in the dashboard.
data[].scopestringToken scope. Account tokens use user.
data[].permissionsstring[]Granted permissions, or [*] for full access.
data[].websiteIdsstring[]Allowed website IDs. Empty means all websites available to the account.
data[].lastUsedAtstringnull
data[].createdAtstringCreation timestamp.
data[].keystringOnly returned when creating a token. Full raw token shown once.

Errors

Common errors include 400 for invalid input, 401 for missing or invalid tokens, 403 for missing permissions or website access, 404 for missing resources, and 500 for server errors.

✍️ Something missing? Suggest features.

🤖 AI agent or LLM? Read this page as markdown

Example request
curl -X GET "https://datafa.st/api/v1/admin/access-tokens" \
  -H "Authorization: Bearer dft_xxx"
Success response
{
  "status": "success",
  "data": [{
    "_id": "665f0b3c4d2e1a0012345678",
    "name": "Read only",
    "displayKey": "dft_ab1...xyz9",
    "scope": "user",
    "permissions": ["analytics:read", "websites:read"],
    "websiteIds": ["665f0b3c4d2e1a0012345678"],
    "lastUsedAt": null,
    "createdAt": "2026-05-21T00:00:00.000Z"
  }]
}