Walnut · Authentication Profile
Walnut Authentication
Authentication
Walnut authenticates the Customer Data API with a single static API key sent in the x-api-key request header. There is no OAuth, no OIDC, no bearer token and no self-service key management: keys are provisioned out-of-band by a Walnut account representative, shown once, and cannot be rotated or recovered by the customer. Webhook deliveries are authenticated in the opposite direction with an HMAC-SHA256 signature. Human access to the Walnut application is separate and supports SAML SSO with SCIM provisioning on the Accelerate and Scale plans.
Walnut declares 0 security scheme(s) across its OpenAPI definitions.
Sales DemoInteractive DemosProduct DemosSales EnablementDemo AnalyticsGo-To-MarketAI-PoweredWebhookMCPAnalytics
Methods:
Schemes: 0
OAuth flows:
API key in:
Security Schemes
Source
Authentication Profile
Work with this as data
Every security artifact here is available over the APIs.io API and to AI agents over MCP.