# How should I authenticate GenderAPI requests?

> Use Authorization: Bearer YOUR_API_KEY from trusted server-side code. V2 POST requests also require Content-Type: application/json. GET /api/v2/gender additionally accepts a query key, but headers keep credentials out of browser URLs. Missing, malformed or unknown keys can use the shared IP trial; check meta.access.mode is api_key for an account integration. Known disabled, expired or restricted keys do not fall back to a trial.

Canonical HTML: https://www.genderapi.io/frequently-asked-questions/how-to-authenticate-api-requests

Last reviewed: 2026-09-26

## Answer

Use Authorization: Bearer YOUR_API_KEY from trusted server-side code. V2 POST requests also require Content-Type: application/json. GET /api/v2/gender additionally accepts a query key, but headers keep credentials out of browser URLs. Missing, malformed or unknown keys can use the shared IP trial; check meta.access.mode is api_key for an account integration. Known disabled, expired or restricted keys do not fall back to a trial.

## Related canonical guidance

- [V2 authentication and free trial](https://www.genderapi.io/docs/v2/authentication)
- [V2 OpenAPI specification](https://www.genderapi.io/openapi/v2/openapi.json)
