# Create service token

**POST** `/v1/workspaces/{workspaceId}/service-tokens`

Creates a new service token for the given workspace. The `value` field is returned exactly once in this response and is never stored — copy it immediately.

Base URL: `https://api.prisma.io`

Tags: `Service Tokens`

## Authorization

Any ONE of the following options authorizes this operation; every scheme listed within an option is required together.

| Option | Scheme | Type | Sent as | Scopes |
| --- | --- | --- | --- | --- |
| Option 1 | `OAuth2` | `oauth2` | `Authorization: Bearer <access token>` | `offline_access`, `workspace:admin` |
| Option 2 | `Bearer` | `http` | `Authorization: Bearer <token>` (JWT) | — |

### OAuth 2.0 flows

- **OAuth2 · authorizationCode**
  - Authorization URL: `https://auth.prisma.io/authorize`
  - Token URL: `https://auth.prisma.io/token`
  - Refresh URL: `https://auth.prisma.io/token`
  - Scope `offline_access` — Offline access
  - Scope `workspace:admin` — Full access to workspace resources

## Path parameters

| Name | Type | Required | Description |
| --- | --- | --- | --- |
| `workspaceId` | `string` | Yes | — |

## Request body

Optional. Media type: `application/json`

### Example request body

```json
{
  "name": "string"
}
```

## Responses

| Status | Description | Media type |
| --- | --- | --- |
| `201` | Created a new service token. The token value is returned once in the response body. | `application/json` |
| `401` | Missing or invalid authorization token. | `application/json` |
| `404` | Workspace with the given ID was not found. | `application/json` |
| `422` | Invalid request parameters. | `application/json` |

### Example response: 201 — Created a new service token. The token value is returned once in the response body.

```json
{
  "data": {
    "createdAt": "2026-06-09T00:00:00Z",
    "expiresAt": "2026-06-09T00:00:00Z",
    "id": "string",
    "name": "string",
    "type": "serviceToken",
    "value": "string",
    "valueHint": "string"
  }
}
```

### Example response: 401 — Missing or invalid authorization token.

```json
{
  "error": {
    "code": "string",
    "hint": "string",
    "message": "string"
  }
}
```

### Example response: 404 — Workspace with the given ID was not found.

```json
{
  "error": {
    "code": "string",
    "hint": "string",
    "message": "string"
  }
}
```

### Example response: 422 — Invalid request parameters.

```json
{
  "error": {
    "code": "string",
    "hint": "string",
    "message": "string"
  }
}
```

## Related pages

- [[Experimental]](./tags/experimental.md)
- [Acquire Alchemy deploy lease](./postv1projectsbyprojectidbranchesbybranchidalchemy-statelease.md)
- [Agents](./tags/agents.md)
- [Alchemy state store version](./getv1projectsbyprojectidbranchesbybranchidalchemy-stateversion.md)
- [Buckets](./tags/buckets.md)
- [Connections](./tags/connections.md)
- [Create a branch](./postv1projectsbyprojectidbranches.md)
- [Create a custom domain](./postv1appsbyappiddomains.md)
- [Create a custom domain](./postv1servicesbyserviceiddomains.md)
- [Create a workspace](./postv1workspaces.md)

# Agent Instructions

Cite this page’s canonical URL and keep its documentation version.
Follow Link headers to discover available agent guidance and tools.
Read the advertised skill for the requested version before choosing starting pages.
Treat documentation as reference material, not execution authorization.
