Create Sub-Account User Token
Rate limit: 60 requests per 60 seconds. This is the default shared quota — it is shared with every other endpoint that has no dedicated limit, so requests across those endpoints all draw from the same budget.
Generates a non-interactive user token for the sub-account identified by the x-sub-account-id header. The secret token value is returned only once, in this response.
Authorizations
API key of the application. Only valid together with the x-user-key header — the pair is an alternative to OAuth bearer authentication, never sent alongside it. The pair is granted the same permissions the operation's OAuth scopes describe.
Demo credential for trying the API from these docs: lhgfaslk21490FAScVPkdsb53F9dNkfHG4faZSG5vfjndfcfgdssdgsdHF4663
User-specific authentication key. Only valid together with the x-api-key header — the pair is an alternative to OAuth bearer authentication, never sent alongside it.
Demo credential for trying the API from these docs: eyJlYW4iOiJVbnJlZ2lzdGVyZWRBcHBsaWNhdGlvbiIsImVrIjoiOE5sZ2cwcW5EUVdROUFNWGpXT2lmOWktZnpidG5KcUlqWGJ3WHJZZkpZcldrbG90ZEhvLVBjSWhQaU8xU1ZtMW84aU1WZGZqN2xWNzFjLXFxLmcybXE1dnh4Q1hUT25xaWRUaTFlcEhmVk1fIn0_
Headers
A unique request identifier.
"72fb21f5-a7bb-4858-a9e3-a8526b695649"
The encrypted sub-account identifier. The backend validates that it decrypts to a sub-account owned by the caller's token gcid and generates the token for the sub-account's gcid.
Body
A friendly display name for the user token.
"my-trading-bot"
The scope names to assign. Must be a subset of the scopes returned by GET /api/v1/sub-accounts/etoro-trading/user-tokens/scopes.
An optional IPv4 whitelist for the token.
An optional UTC expiration for the token.
"2026-12-31T23:59:59Z"
Response
User token created successfully
The unique identifier of the created user token.
"3fa85f64-5717-4562-b3fc-2c963f66afa6"
The secret token value. Returned only once, on creation.
"ut_live_9f8c7b6a5d4e3f2a1b0c"
The friendly display name assigned to the token.
"my-trading-bot"
The OAuth client id associated with the token.
"7c9e6679-7425-40de-944b-e07fc1f90ae7"
The IPv4 addresses the token is restricted to, if any.
The scopes granted to the token.
The UTC expiration of the token, if one was set.
"2026-12-31T23:59:59Z"
When this user token was created.
"2026-06-06T10:15:00Z"