Skip to main content
  • To get started with our APIs, use the endpoint below to generate an Access Token with your API credentials or authorization code.
  • The Access Token is a Bearer token to be included in the Authorization Header of all API requests
  • Multiple tokens may be generated and each is valid for 15 minutes, or 900 seconds

Endpoint

  • POST https://api.criteo.com/oauth2/token Generate an Access Token
Generate another access token when it expires, signaled by a 401 Unauthorized HTTP status code

Parameters

Parameter

Description

client_idstring

Please see below for instructions on getting your credentials throughDeveloper Dashboard

client_secretstring

Please see below for instructions on getting your credentials throughDeveloper Dashboard

grant_typestring

Must beclient_credentialsorauthorization_code

codestring

Only for Authorization Code apps. Authorization code returned during redirection

redirect_uristring

Only for Authorization Code apps. Must match theredirect_uriused for the authorization request.

Generate an Access Token

  • This endpoint generates a new access token using your API credentials or authorization code.
  • To comply with the OAuth2 standards of using client_credentials, Criteo API authorization supports Content-Type: ‘application/x-www-form-urlencoded’. See the example below.
Mandatory Content-Type headerPlease ensure you include Content-Type: application/x-www-form-urlencoded header in your call to /oauth2/token endpoint.

Use an Access Token

  • Once you have obtained your access token, you can authenticate all subsequent requests by including an Authorization HTTP header, as in the example below:
Authenticated Request
OAuth FlowYou can find more details about how to implement OAuth flow for the different authentication methods in OAuth implementation guides.