Skip to main content
SketricGen exposes three developer surfaces. Choose the surface based on whether an AI assistant should manage SketricGen, your software should manage SketricGen resources, or your application should run an agent. A single Teamspace API key can carry runtime access, management access, or both.

Choose the right integration

How the surfaces fit together

The MCP server is an AI-friendly adapter over the Admin API. It does not bypass Teamspace roles, project boundaries, plan limits, or connector permissions. The Runtime API and Admin API remain separate endpoints, but their permissions are capabilities on the same API-key entity. A key can have Run agents, Manage resources, or both. A key without Run agents cannot execute an agent, and a key without Manage resources cannot create, edit, or delete Teamspace resources.

Start here

API key location

Create API keys from the active Teamspace:
  1. Open Teamspace settings in SketricGen.
  2. Select API keys.
  3. Select Create key.
  4. Enable Run agents, Manage resources, or both.
  5. Choose the narrowest Project scope. If Run agents is enabled, add agent restrictions when needed; if Manage resources is enabled, choose a role and expiry.
  6. Copy the plaintext sk_api_... key immediately. SketricGen shows it only once.
API key creation requires an eligible Teamspace plan and permission to manage API keys.

Security rule

Treat API keys as secrets:
  • Keep keys on a server or in a secret manager.
  • Never put a key in a public repository, screenshot, browser bundle, or prompt transcript.
  • Prefer OAuth for hosted MCP clients because the AI client never needs your management-capable API key.
  • Use a narrowly scoped key for local agents and automation.
  • Revoke a key from Teamspace settings when it is no longer needed.