Flash Sale:75% Off Hosting + Free DomainEnds in13h47m14sView Plans
Hostvento logoHostvento

Create and Manage API Tokens

An API token lets a program log in to your server without your password. This guide shows how to make one, see the list, and delete it.

WHM2 min read13 steps7 screenshots

What is an API token?

An API is a way for two programs to talk to each other. A token is like a hotel key card. It opens the doors you allow and you can cancel it at any time, without changing the main lock. That is safer than giving a program your real password.

Billing tools, backup tools and scripts often use tokens.

Create a token in WHM

  1. Log in to WHM.
  2. Type API Tokens in the search box at the top left.
  3. Click Manage API Tokens.
    Screenshot: Click Manage API Tokens .
  4. Click Generate Token.
  5. Type a name that tells you what the token is for, for example billing-system.
  6. Choose whether the token can do everything or only some things. Pick the smallest set of rights that works.
  7. If you see an option for an expiry date, you can set one. A token that ends by itself is safer.
    Screenshot: If you see an option for an expiry date, you can set one. A token that ends by itself is s
  8. Click Save.
  9. Copy the long token text now. WHM shows it only once. Store it in a safe place such as a password manager.
    Screenshot: Copy the long token text now. WHM shows it only once. Store it in a safe place such as a p

Change or remove a token

  1. Open Manage API Tokens again.
    Screenshot: Open Manage API Tokens again.
  2. Find the token in the list. You see its name and when it was made.
  3. Click Revoke to delete it, or use the edit option to change its name or rights.
  4. Confirm when asked.

Warning: Once you revoke a token, any tool that used it stops working. Check which tool uses it first. A lost token cannot be shown again, so you must make a new one.

Tokens in a cPanel account

A normal cPanel user may also see a similar tool. In cPanel, search for Manage API Tokens in the search box. It works the same way, but the token only controls that one account. Some hosting plans do not include it, so ask Hostvento support if you cannot find it.

Tip: Make one token for each tool. Then you can cancel one without breaking the others.

Quick recap

  • A token is a safe key that replaces your password for programs.
  • Create it with Manage API Tokens and Generate Token.
    Screenshot: Create it with Manage API Tokens and Generate Token .
  • Copy it at once because it is shown only one time.
  • Use Revoke to delete a token you no longer need.
    Screenshot: Use Revoke to delete a token you no longer need.
    Screenshot: Use Revoke to delete a token you no longer need.