Skip to main content

Developer

The Developer section gives you two things: a way to authenticate API traffic to your agents, and a way to see what that traffic did. Both surfaces are workspace-wide and work across every agent type — Agent, Data Agent, and Voice Agent.

SurfaceWhat it isWhen to use
API KeysA secret token (sk_...) scoped to one or more agent types and (optionally) specific agentsCalling DronaHQ APIs from your backend, scripts, or third-party tools
Request LogsA 30-day rolling feed of every API request authenticated by your keysDebugging integrations, auditing usage, investigating errors

A typical setup looks like this:

  1. Create an API key with the smallest set of scopes the integration needs.
  2. Use the key from your application via the api-key header.
  3. When something doesn't behave as expected, open Request Logs and filter by that key to see exactly which calls hit DronaHQ and how they responded.

What you can call with a key​

APIScope neededWhat it does
Outbound Call DispatchVoice AgentQueue one-off outbound calls and track them as a batch
CampaignsVoice AgentCreate, schedule, and control outbound campaigns, and add contacts to them
These are server-to-server APIs

The api-key header is not on the CORS allow-list, so browsers cannot call these endpoints directly. Call them from your backend — and never ship a key to a browser or mobile client, since a key is a workspace-wide secret.

What's Next​

  • API Keys — create, scope, and manage tokens that authenticate your API calls
  • Request Logs — inspect, filter, and troubleshoot every authenticated request