# POST /api/v1/hosting/ssh-keys

> List, add or remove SSH public keys

- Group: access
- Tier: W
- Required scope: read:hosting
- Docs: https://api.inleed.com/reference/access/create-ssh-keys

## Description

`action=list` returns each authorized key `{fingerprint, type, comment, bits}` and needs only read access. `create` (alias `authorize`) adds a `public_key` — a single OpenSSH public-key line — and returns its fingerprint; `delete` removes one by `fingerprint`. Writes require `write:hosting`. To enable or disable SSH for the whole account use `set_ssh_access`.

## Body

- `input` — string (required). A domain, email address, website URL, or Inleed service id — for example example.se, info@example.se or 42976. Resolved to the owning account automatically, and the resolved target is echoed back in the response.
- `action` — enum (required). list the authorized keys, create (add) one, or delete one. Writes require write:hosting. One of list, create, delete.
- `public_key` — string. The OpenSSH public key line to add, e.g. ssh-ed25519 AAAAC3Nza… laptop.
- `fingerprint` — string. Up to 64 characters. Pattern ^SHA256:[A-Za-z0-9+\/=]{40,48}$.

## Request

```bash
curl -X POST "https://mcp.inleed.com/api/v1/hosting/ssh-keys" \
  -H "Authorization: Bearer inl_live_…" \
  -H "Content-Type: application/json" \
  -d '{"input":"example.se","action":"list","public_key":"example.se","fingerprint":"example.se"}'
```

## Errors

- **400**  — codes: invalid_request
- **401** No token was presented, or the token is revoked, expired or unknown. — codes: unauthorized, token_expired, token_revoked
- **403** The token lacks a required scope, or this account does not own the resource. — codes: insufficient_scope, domain_not_owned
- **404** No such resource for this account. — codes: not_found
- **422** Validation error — codes: validation_failed
- **429** The rate limit for this token is exhausted. See `Retry-After`. — codes: rate_limited
- **500** Something went wrong on our side. The failure is logged against `requestId`. — codes: internal_error

## Related

- GET /api/v1/hosting/ssh-keys — https://api.inleed.com/reference/access/manage-ssh-keys
- DELETE /api/v1/hosting/ssh-keys — https://api.inleed.com/reference/access/delete-ssh-keys
- POST /api/v1/hosting/ssh-keys/authorize — https://api.inleed.com/reference/access/create-ssh-keys-2

