API testing

Authenticate with a query key

Easy30 pts~12 min
  • API keys
  • Query parameters
Practice app · Acme REST API

A live REST + GraphQL API with auth, validation, pagination, rate limiting and an interactive request console.

BASE_URL
/api/practice
Console app
/lab/api-testing-authenticate-with-a-query-key

Your starter code already declares BASE_URL — call the API relative to it.

Objective

Authenticate with an API key passed as a query parameter and verify a wrong key is rejected.

Your task

  1. 1GET BASE_URL + "/secure/api-key" with query api_key=tqa_live_key_123 → assert 200.
  2. 2Repeat with api_key=wrong-key → assert 401 INVALID_API_KEY.

Acceptance criteria

  • GET /secure/api-key returns 200
  • A wrong key returns 401
  • At least 2 assertions pass

Fixtures

apiKey
tqa_live_key_123
basicUser
admin
basicPassword
secret
username
qa@target.dev
password
Test@123

API testing · API Testing · Authentication