Skip to content
/.well-known/jwks.json

AS public signing keys (JWKS)

The AS's RS256 public keys. The MCP server verifies access tokens against these (it holds no signing secret). Access tokens are RS256 JWTs with `iss`, `aud` (the canonical resource), `sub` (user uuid), `scope: mcp`, `token_use: mcp_access`, short `exp` (≤15 min), and `kid`.

free

Response schema

Schema not yet documented

Full response schema, sample response, and curated examples for this endpoint are landing in Phase 59. The hero, parameters, code samples, and metadata above remain accurate today.

Errors

StatusLabelDescription
200OKRequest succeeded.
400Bad RequestInvalid query, body, or path parameter.
401UnauthorizedMissing or invalid Authorization header / api_Token.
402Payment RequiredInsufficient token balance for this call. Top up
429Too Many RequestsRate limit exceeded for your tier (see /pricing for tier limits). Tier limits
500Server ErrorUnexpected server-side failure. Retry with backoff; report if persistent.

Code samples

curl "https://api.finradar.ai/.well-known/jwks.json" \
  -H "Authorization: Bearer YOUR_JWT_TOKEN"

Generate an API key in /account/credentials to run live queries (literal YOUR_API_KEY placeholder shown until then).