Authentication
Two ways to authenticate: an API key for local use, or OAuth for the hosted connector.
Local: API key
Local installs read SOURCE_PARTS_API_KEY from the environment. Keys use the sp_live_ / sp_test_ prefix and inherit your account's plan limits. Create and revoke keys in your dashboard.
Hosted: OAuth
The hosted connector at https://mcp.source.parts/ authenticates with OAuth during the connector setup — no API key is stored in the client.