--- name: omni-auth description: Manage API key authentication and session tokens. Start here to authenticate requests via Bearer token, obtain session cookies, and configure login requirements for the AIRoute API.
Overview
Manage API key authentication and session tokens. Start here to authenticate requests via Bearer token, obtain session cookies, and configure login requirements for the AIRoute API.
Authentication
All requests require a valid Bearer token or session cookie. Obtain a token via POST /api/auth/login or configure REQUIRE_API_KEY=false for local development.
Endpoints
POST /api/auth/login
Authenticate user
curl -X POST https://localhost:20128/api/auth/login \
-H "Authorization: Bearer $AIRoute_TOKEN"
-H "Content-Type: application/json" \
-d '{}'
POST /api/auth/logout
Log out
curl -X POST https://localhost:20128/api/auth/logout \
-H "Authorization: Bearer $AIRoute_TOKEN"
-H "Content-Type: application/json" \
-d '{}'
Payloads
See the full OpenAPI specification at GET /api/openapi/spec or docs/openapi.yaml for detailed request/response schemas.
AIRoute
Local/remote AI gateway exposing OpenAI-compatible REST. One key, 207+ providers, auto-fallback, RTK token saver, MCP server, A2A agents.
Setup
export AIRoute_URL="http://localhost:20128" # or VPS / tunnel URL
export AIRoute_KEY="sk-..." # from Dashboard → API Keys
All requests: ${AIRoute_URL}/v1/... with Authorization: Bearer ${AIRoute_KEY}.
Verify: curl $AIRoute_URL/api/health → {"ok":true}
Discover models
curl $AIRoute_URL/v1/models # chat/LLM (default)
curl $AIRoute_URL/v1/models/image # image-gen
curl $AIRoute_URL/v1/models/tts # text-to-speech
curl $AIRoute_URL/v1/models/embedding # embeddings
curl $AIRoute_URL/v1/models/web # web search + fetch
curl $AIRoute_URL/v1/models/stt # speech-to-text
Use data[].id as model field in requests. Combos appear with owned_by:"combo".
Capability skills
CLI skills (AIRoute binary)
| Capability | Raw URL |
|---|---|
| CLI entry point | https://raw.githubusercontent.com/diegosouzapw/AIRoute/main/skills/AIRoute-cli/SKILL.md |
| CLI admin & lifecycle | https://raw.githubusercontent.com/diegosouzapw/AIRoute/main/skills/AIRoute-cli-admin/SKILL.md |
| CLI providers & keys | https://raw.githubusercontent.com/diegosouzapw/AIRoute/main/skills/AIRoute-cli-providers/SKILL.md |
| CLI cloud agents | https://raw.githubusercontent.com/diegosouzapw/AIRoute/main/skills/AIRoute-cli-cloud/SKILL.md |
| CLI evals & benchmarks | https://raw.githubusercontent.com/diegosouzapw/AIRoute/main/skills/AIRoute-cli-eval/SKILL.md |
Errors
401→ set/refreshAIRoute_KEY(Dashboard → API Keys)400 Invalid model format→ checkmodelexists in/v1/models/<kind>503 Provider circuit open→ upstream provider down; retry afterRetry-Afterseconds429→ rate limited; honorRetry-After
Differentiators vs OpenAI direct
- Auto-fallback combos (14 strategies): never stop coding even if a provider rate-limits
- RTK token saver: tool_result compressed via 47 specialized filters (git-diff, test-jest, terraform-plan, docker-logs…) — 20-40% token reduction
- Caveman mode: optional terse system prompt injection (LITE/FULL/ULTRA) — 15-25% completion reduction
- MCP + A2A servers built-in (this is the only AI router that exposes both protocols)
- Memory with FTS5 + Qdrant for persistent agent context
- Guardrails for PII masking, prompt injection detection, vision policies