# API for open calls - tokens, access and how adopters want to discuss

**URL:** <https://we.hypha.app/t/api-for-open-calls-tokens-access-and-how-adopters-want-to-discuss/213>\
**Category:** API\
**Created:** [November 23, 2021, 7:39pm UTC](https://we.hypha.app/t/api-for-open-calls-tokens-access-and-how-adopters-want-to-discuss/213 "2021-11-23T19:39:29Z")\
**Posts on this page:** 1\
**Page:** 1

<div class="post-metadata">

**Author:** ![eriol](https://yyz2.discourse-cdn.com/flex036/user_avatar/we.hypha.app/eriol/32/39_2.png) [@eriol](https://we.hypha.app/u/eriol)\
**Post date:** [November 23, 2021, 7:39pm UTC](https://we.hypha.app/t/api-for-open-calls-tokens-access-and-how-adopters-want-to-discuss/213/1 "2021-11-23T19:39:29Z")

</div>

In the maintainers call on the 23rd of november 2021 we briefly discussed some work that the dev team is doing around API tokens being active for only apply or only public API endpoints:

> <https://github.com/HyphaApp/hypha/issues/2607>
>
> Or take it even further and allow API tokens to be active for any combinations o…f API end points.

What i believe this means in plain, non-technical speak is that there is now not tokens for accessing sensitive, private data (and I believe this was largely unused by adopters at present) and there are only API token access for open, public facing stuff (open calls, etc)

In the maintainer call today we spoke briefly about whether this will meet some of the other adopters in the future (not immediately) and so we opened up this discussion thread for [@Adopters](https://we.hypha.app/groups/adopters) and [@Implementers](https://we.hypha.app/groups/implementers) to chime in and discuss and we also added this on the agenda for Dec 1st Adopters call [Monthly adopters meeting: 2021 Dec 1st (combined Nov & Dec) - #2 by eriol](https://we.hypha.app/t/monthly-adopters-meeting-2021-dec-1st-combined-nov-dec/208/2)
