Not every scope can go on an API key. The scopes below are the full OAuth set, granted when you connect an assistant. API keys carry a narrower set — creating a key with one of the following is rejected:
read:api_keys · write:api_keys · read:sessions · write:sessions · read:agent_sessions · write:agent_sessions · write:payments · write:trades · write:sub_accounts · write:receipts · write:usage_creditsPayments are excluded from API keys by design: a payment always needs your approval in the Moneda app. The rest are session- and credential-management scopes, which stay with an interactive connection rather than a long-lived key.What read permissions are available?
These permissions let your AI view your data.What write permissions are available?
These permissions let your AI take actions on your behalf.Even with
write:payments granted, all payment requests must be approved by you in the Moneda mobile app with biometric authentication before any money moves.write:payments covers these request types, each approved by you in the Moneda app: initiate_payment (one-off payments), initiate_currency_exchange (moving money between your own currency accounts), propose_scheduled_payment (recurring payments) and pay_x402. Currency exchange and recurring payment proposals were added to this scope after it first shipped, so an assistant you connected earlier with write:payments can now also prepare those requests. Nothing moves without your approval; to withdraw the permission, disconnect the assistant in Settings > Security > Active Sessions. Crypto trades are separate, under write:trades, which also covers cancel_conditional_order (cancelling an open crypto limit, stop-loss, take-profit or trailing-stop order).read:agent_sessions and write:agent_sessions are not included in the default scope set — AI clients have to ask for them explicitly. Delegating autonomous spend is opt-in: you activate every session with a passkey in the Moneda app, and the on-chain policy (pre-funded wallet + pinned recipient + per-payment / per-period caps) means the agent can never exceed the limits you set or send funds anywhere else.write:usage_credits is not included in the default scope set — AI clients have to ask for it explicitly. It only lets the agent redeem a top-up payment you already sent to Moneda for AI usage credits. The amount comes from the confirmed payment, so there’s nothing extra to approve, and the same payment can never be redeemed twice.Learn more
Authentication
How OAuth keeps your account secure when connecting to AI.
Resources
Data your AI reads automatically for context.
Available tools
See the full set of tools your AI assistant can use.
Use cases
Real examples of what you can do with Moneda and AI.
