Skip to main content
All API endpoints require Bearer token authentication using an API key.

How to authenticate with API keys

Include your API key in the Authorization header on every request:
Generate API keys from Settings > API Keys in your Nordic Financial News account.

API key scopes and permissions

API keys use scope-based access control. All scopes are enabled by default: You can restrict scopes when creating an API key to limit access.

Rate limits and usage quotas

The API enforces hourly rate limits and monthly usage quotas per API key. Your current limits and usage are visible in your API key settings.

Rate limit headers

Every response includes headers so you can track usage proactively: Which pair of monthly headers you receive depends on your plan, so read whichever one is present. X-Monthly-Reset also describes a different window in each case: the end of the calendar month on a capped plan, the end of your billing period on a metered one. When either limit is exceeded, the API returns 429 Too Many Requests with a Retry-After header. The two are different problem types: rate limit exceeded for the hourly limit and monthly limit exceeded for the monthly one. See error handling for how to handle them.
304 Not Modified responses from ETag caching do not count against your monthly quota.

What counts toward your quota

Every request that authenticates successfully counts toward your monthly quota, regardless of the response status. This includes 404s, validation errors, and other 4xx or 5xx responses. Two kinds of requests are not counted:
  • Requests rejected at authentication: a missing or invalid API key, a blocked IP, or a plan without API access.
  • 304 Not Modified responses from conditional requests.
The hourly rate limit counts every request that presents your API key, regardless of the response.
Last modified on September 9, 2026