MemberVault API Authentication
How to authenticate MemberVault API requests: one Bearer API key plus a connectionId. MindCloud stores your API key securely — set it once, never resend it.
Every MemberVault API request through MindCloud needs two things: a MindCloud API Key and a connectionId for your MemberVault account. This page covers both, plus exactly how to send them, so you do not need to visit any other page to get authenticated.
Steps to authenticate
- Create a MindCloud account at app.mindcloud.co if you do not already have one.
- Generate a MindCloud API Key in API Keys. This is the Bearer token you send on every request. Keep it on your server.
- Create a MemberVault connection in Connections. MemberVault uses an API key. You generate the key in your MemberVault account, then paste it in when you create the connection — MindCloud stores it securely and never returns it in a response.
- Copy the connection’s
connectionId— you will send it on every request alongside your MindCloud API Key.
How requests are authenticated
Authentication has two layers. Your MindCloud API Key authenticates the request to MindCloud, sent as a Bearer token in the Authorization header. The connectionId selects the connected MemberVault account that should run the action. MindCloud stores and refreshes the MemberVault credentials behind that connection, so you never send provider tokens with your requests.
Pass connectionId in the query string for GET and DELETE actions, and in the JSON body for POST, PUT, and PATCH actions.
For example, calling List Products with an MemberVault connection looks like this:
curl --request GET \
--url "https://connect.mindcloud.co/v1/universal/memberVault/latest/actions/list-products" \
--header "Authorization: Bearer $MINDCLOUD_API_KEY" \
--get \
--data-urlencode "connectionId=$CONNECTION_ID"The Authorization: Bearer <your MindCloud API Key> header authenticates you to MindCloud; the connectionId tells MindCloud which MemberVault account to run the action against. Missing or invalid Authorization returns 401, and a missing or mismatched connectionId returns 400.
Connect your MemberVault account
You need your MemberVault account subdomain and a custom integration API key.
- Open Account Settings in MemberVault
Sign in to MemberVault and open your Account Settings area.
- Turn on custom integration API keys
Enable Custom Integration API Keys if your account has not enabled them yet.
- Copy your account name
Copy the subdomain portion of your MemberVault site URL. For example, if your URL is yourbiz.mvsite.app, use yourbiz.
- Copy your API key
Create or reveal your MemberVault API key and keep it ready for the MindCloud connection form.
- Finish the MindCloud connection
Paste your Account Name and API key into the connection form, then test the connection.
Keep your key safe
Keep your MindCloud API Key on your server; do not ship it in browser code, mobile apps, public repositories, or logs. Anyone with the key can call the Universal API as your MindCloud account, across every connection you have created.