Skip to main content
Skip to content

This version of GitHub Enterprise Server will be discontinued on 2026-10-14. Discontinued releases are not supported. No patch releases will be made, even for critical security issues. For better performance, improved security, and new features in GitHub Enterprise Server, see Overview of the upgrade process. For help with the upgrade, GitHub Enterprise Support.

Authenticating to the REST API

Learn how to authenticate your REST API requests.

Authenticating to the REST API

You can authenticate to the REST API to access more endpoints and have a higher rate limit.

Keeping your API credentials secure

Follow these best practices to keep your API credentials and tokens secure.

Endpoints available for GitHub App installation access tokens

Your GitHub App can make requests to the following REST endpoints with an installation access token.

Endpoints available for GitHub App user access tokens

Your GitHub App can make requests to the following REST endpoints with a user access token.

Endpoints available for fine-grained personal access tokens

Your fine-grained personal access token can make requests to the following REST endpoints.

Permissions required for GitHub Apps

For each permission granted to a GitHub App, these are the REST API endpoints that the app can use.

Permissions required for fine-grained personal access tokens

For each permission granted to a fine-grained personal access token, these are the REST API endpoints that the app can use.