Trustpilot Reviews API — Authentication — FetchLayer Docs
Documentation menu
FetchLayer FetchLayer API

Authentication

All requests use your FetchLayer API key as a Bearer token. No Trustpilot Business account, no OAuth app, and no API key issued by Trustpilot is required.

Sending requests

bash
curl -X POST https://api.fetchlayer.dev/trustpilot/company-reviews \
  -H "Authorization: Bearer ss-your-key" \
  -H "Content-Type: application/json" \
  -d '{"company":"hellofresh.com","stars":[1],"limit":200}'

Keep your key secret

Only use API keys in server-side code and rotate a key immediately if it is exposed.

Every route is a POST

All five Trustpilot endpoints take a JSON body over POST. There is no media download and no query-string route, so the key never travels in a URL.

Authentication errors

A missing or invalid key returns HTTP 401.

json
{
  "error": "Invalid API key"
}