Skip to main content
Pinecone Docs

Search documentation

Type to search this documentation.

On this pageOverview

Get an access token

The host domain for OAuth endpoints is login.pinecone.io.

curl
PINECONE_CLIENT_ID="YOUR_CLIENT_ID"
PINECONE_CLIENT_SECRET="YOUR_CLIENT_SECRET"

# Note the base URL: login.pinecone.io
curl -X POST "https://login.pinecone.io/oauth/token" \ 
     -H "X-Pinecone-Api-Version: 2025-04" \
     -H "Content-Type: application/json" \
     -d "{
           \"grant_type\": \"client_credentials\",
           \"client_id\": \"$PINECONE_CLIENT_ID\",
           \"client_secret\": \"$PINECONE_CLIENT_SECRET\",
           \"audience\": \"https://api.pinecone.io/\"
         }"
curl
{
    "access_token":"YOUR_ACCESS_TOKEN",
    "expires_in":86400,
    "token_type":"Bearer"
}

POST /oauth/token

  • client_id (body, string, required) — The service account's client ID.
  • client_secret (body, string, required) — The service account's client secret.
  • grant_type (body, string, required) — The type of grant to use.
  • audience (body, string, required) — The audience for the token.
  • 200 — A response that contains the access token.
  • 400 — Invalid request.
  • 401 — Unauthorized.
  • 403 — Forbidden.
  • 429 — Too many requests.
  • 500 — Internal server error.
  • 501 — Not implemented.
  • 503 — Service unavailable.
Suggest an edit

Propose a replacement for this page. The site team reviews it before applying any changes.

Export
Documentation menu