Application keys
A token carries a scope per resource group — compute:rw, billing:ro and so on. If the scope is missing, the interface responds with 403, not 404: the resource exists, the token is just not allowed to see it.
The project is in its own header, not in the path. This means the same request remains unchanged between test and production; only the identifier is swapped.
Authorization: Bearer · X-Entronyx-Project



