Paste an API credential to authenticate requests. Mint one from the
API tokens page — tokens are scoped to whichever resources an org admin selected when creating them. The credential is held only in this tab's memory for the duration of the session: it is never written to local or session storage, and it is cleared as soon as you reload the page or press "Clear token".