# Authentication & access

Documentation is public. API calls use your own site-issued key.

## Bearer authentication

```http
Authorization: Bearer YOUR_API_KEY
```

Keep keys on your own server. Do not include them in public pages, screenshots, repositories or logs. Key management, wallets and personal tasks require authentication.

## Model access

```bash
curl --fail-with-body 'https://noveadream.com/v1/models' \
  -H "Authorization: Bearer $NOVEA_API_KEY"
```

The catalog describes platform capabilities. Calls still enforce key restrictions, account permissions, balance and membership requirements. Public documentation does not change these checks.

## Use the correct endpoint

| Type | Path |
| --- | --- |
| Images | /v1/images/generations |
| Video | /v1/videos |
| NovelAI | /v1/nai/estimate → /v1/nai/generations |

Follow this service’s response fields. Providers may expose different protocols for the same model name; changing the hostname alone does not guarantee compatibility.
