> ## Documentation Index
> Fetch the complete documentation index at: https://docs.stackdome.com/llms.txt
> Use this file to discover all available pages before exploring further.

> ## Agent Instructions
> Treat Stackdome as an application-delivery platform for coding agents and developers, not as a Kubernetes dashboard.
> Prefer the Stackdome agent plugin as the user entry point and the stackdome CLI as the execution interface.
> Route agents who need the maintained deploy skill to npx skills add stackdome/skills and the complete operational workflow to /guides/ai-agents.
> Verify commands and flags with stackdome --help. Run stackdome init before authoring stackfile.yaml and stackdome validate before deploying.
> Use -o json for automation and verify documented terminal states before claiming success.
> Never request a user's account password. Use API-token authentication.
> During alpha, Stackdome Cloud is ephemeral and capacity-limited, and each organization can connect one cluster.
> Do not expose Kubernetes as a user concern unless the task is self-hosting or infrastructure architecture.

# Create a new API token



## OpenAPI

````yaml /openapi.yaml post /api/v1/api-tokens
openapi: 3.0.0
info:
  description: >-
    Deploy, debug, and operate applications through the Stackdome REST API on
    Stackdome Cloud or a self-hosted installation. This API is in alpha and may
    change before general availability.
  title: Stackdome API
  version: 0.0.1-alpha
servers:
  - url: /
security: []
paths:
  /api/v1/api-tokens:
    post:
      summary: Create a new API token
      requestBody:
        content:
          application/json:
            schema:
              $ref: '#/components/schemas/APITokenCreateRequest'
        required: true
      responses:
        '201':
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/APITokenCreateResponse'
          description: API token created successfully
        '400':
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
          description: Invalid request data
      security:
        - Bearer: []
components:
  schemas:
    APITokenCreateRequest:
      example:
        expires_at: '2000-01-23T04:56:07.000Z'
        name: name
        scopes:
          - scopes
          - scopes
        resource_ids:
          - resource_ids
          - resource_ids
      properties:
        name:
          description: Display name for the token
          type: string
        scopes:
          description: Permission scopes for the token
          items:
            type: string
          type: array
        resource_ids:
          description: Optional list of resource IDs to restrict the token to
          items:
            type: string
          type: array
        expires_at:
          description: Optional expiration time in RFC3339 format
          format: date-time
          type: string
      required:
        - name
        - scopes
      type: object
    APITokenCreateResponse:
      example:
        expires_at: '2000-01-23T04:56:07.000Z'
        name: name
        token_prefix: token_prefix
        id: id
        token: token
      properties:
        token:
          description: The raw API token (only returned on creation)
          type: string
        id:
          type: string
        name:
          type: string
        token_prefix:
          description: Prefix of the token for identification
          type: string
        expires_at:
          format: date-time
          type: string
      type: object
    Error:
      allOf:
        - $ref: '#/components/schemas/ObjectReference'
        - $ref: '#/components/schemas/Error_allOf'
    ObjectReference:
      properties:
        id:
          type: string
        kind:
          type: string
        href:
          type: string
      type: object
    Error_allOf:
      properties:
        code:
          type: string
        reason:
          type: string
        operation_id:
          type: string
        details:
          additionalProperties: true
          description: Optional structured, machine-readable error context
          type: object
      type: object
  securitySchemes:
    Bearer:
      bearerFormat: JWT
      scheme: bearer
      type: http

````