List your API tokens
Token metadata only. The secret is returned exactly once, when the token is minted, and is never retrievable afterwards.
Authentication
JWT access token obtained from POST /api/v1/auth/login, or a finput_sk_... API token
Response
read allows every GET, plus the five computation endpoints: POST /calculator, /calculator/recalculate, /calculator/abn-lookup, /matrix/ and /matrix-calculator/. Running those still consumes daily calculator/Matrix allowance and adds to the caller's own recents; what read prevents is changing data another request reads back, saved scenarios included. read_write additionally allows mutations. Both are bounded by the owner's own permissions — a token can never exceed what its owner could do in the UI.
How the token was created: ui from Settings, mcp by approving an AI assistant's connection request. Read-only — it cannot be set at mint time, and only mcp tokens are accepted at POST /mcp.