Authentication WhatzCRM uses Bearer Token Authentication. Header Authorization: Bearer YOUR_API_KEY Security Tokens are organization-specific Rotate keys regularly