v1

latestOpenAPI 3.0.12026-07-26171200932.8 KB
Agent Portfolios

Update User Token (v2)

Rate limit: 60 requests per 60 seconds. This is the default shared quota — it is shared with every other endpoint that has no dedicated limit, so requests across those endpoints all draw from the same budget.


Updates the settings of an existing user token using scope names. At least one field must be provided. Scopes are specified by name (scopeNames); scope ids are not supported in v2.

patch/api/v2/agent-portfolios/{agentPortfolioId}/user-tokens/{userTokenId}

Path parameters

agentPortfolioIdstring uuid required

The unique identifier of the agent-portfolio.

userTokenIdstring uuid required

The unique identifier of the user token to update.

Headers

x-request-idstring uuid required
Example:b5ba03db-98f4-42ba-8f5a-7b23a947892c

A unique request identifier.

x-api-keystring password required
Example:lhgfaslk21490FAScVPkdsb53F9dNkfHG4faZSG5vfjndfcfgdssdgsdHF4663

API key for authentication.

x-user-keystring password required
Example:eyJlYW4iOiJVbnJlZ2lzdGVyZWRBcHBsaWNhdGlvbiIsImVrIjoiOE5sZ2cwcW5EUVdROUFNWGpXT2lmOWktZnpidG5KcUlqWGJ3WHJZZkpZcldrbG90ZEhvLVBjSWhQaU8xU1ZtMW84aU1WZGZqN2xWNzFjLXFxLmcybXE1dnh4Q1hUT25xaWRUaTFlcEhmVk1fIn0_

User-specific authentication key.

Request body

scopeNamesstring[]

An updated set of permission scope names for the token. Available scopes: etoro-public:trade.real:read, etoro-public:trade.real:write, etoro-public:trade.demo:read, etoro-public:trade.demo:write.

ipsWhiteliststring[]

An updated set of IPv4 addresses allowed to use this token.

expiresAtstring date-time

An updated expiration date and time (UTC) for the token.

Example request

{
  "scopeNames": [
    "etoro-public:trade.real:read",
    "etoro-public:trade.real:write"
  ],
  "ipsWhitelist": [
    "192.168.1.1"
  ],
  "expiresAt": "2026-12-31T23:59:59Z"
}

Response

User token updated successfully