Supra · Authentication Profile
Supra Authentication
Authentication
Supra runs two authentication regimes side by side. The Layer 1 node RPC is fully public and keyless — no API key, no OAuth, no securityScheme in the OpenAPI at all — because authority on a blockchain comes from the signature inside the transaction payload, not from a credential on the HTTP call. The oracle Price Feeds REST and WebSocket APIs are the opposite: an x-api-key header is mandatory, and the key is issued by hand through a Google Form request, with the surface labelled Early Access.
Supra declares 2 security scheme(s) across its OpenAPI definitions.
BlockchainLayer 1OraclesWeb3Market DataSmart ContractsVerifiable RandomnessCross-Chain BridgeAutomationMoveCryptocurrencyDeFi
Methods:
Schemes: 2
OAuth flows:
API key in:
Security Schemes
none
x-api-key apiKey
Source
Authentication Profile
Work with this as data
Every security artifact here is available over the APIs.io API and to AI agents over MCP.