Guides - Manage Personal Access Tokens

Programmatic access to the Linode platform, allowing you to automate tasks through a fully-documented REST API.

Create a Linode account to try this guide with a $ credit.
This credit will be applied to any valid services used during your first  days.

View Personal Access Tokens

  1. Log in to the Cloud Manager

  2. Click on your username at the top of the screen and select API Tokens under the My Profile section.

This displays the API Tokens tab on the My Profile page.

Any personal access tokens you have previously created on your Linode account are listed here. Alongside each token is the date it was created, the date it expires, and links to view the scopes, rename the token, or revoke the token.

Create an API Token

Whenever you need to authorize API access to an application or service, you should create a new personal access token. This token should only allow the level of access needed by the application.

  1. Log in to the Cloud Manager and navigate to the API Tokens page of the My Profile section. See View Personal Access Tokens.

  2. Click the Create a Personal Access Token button to display the Add Personal Access Token panel.

  3. Enter a Label for this new token. Choose a label that allows you to identify the token and understand its intended use.

  4. In the Expiry field dropdown menu, select a timeline for when the new token expires. You can optionally allow this token to never expire. This cannot be changed once the token is created.

  5. Select the level of access this token should have to each product or service with which the Linode API interfaces. This can be None, Read Only, or Read/Write (for full access to that service). This cannot be changed once the token is created.

  6. Click the Create Token button to generate the new personal access token. A dialog box opens and displays your new personal access token. Save this in a safe place, such as a password manager. After closing this prompt, you are not able to view the token string again.

Revoke a Personal Access Token

If you wish to decommission a token or think it may have been compromised, you can revoke access. Once revoked, any application using this token will no longer be authorized to access your account through the Linode API.

  1. Log in to the Cloud Manager and navigate to the API Tokens page of the My Profile section. See View Personal Access Tokens.

  2. Find the token you wish to revoke and click the corresponding Revoke button, which may be visible within the more options ellipsis menu.

  3. A popup appears asking you to confirm that you wish to revoke this token. Click the Revoke button to delete the token and revoke access to any application using that token.

This page was originally published on


Your Feedback Is Important

Let us know if this guide was helpful to you.