For making API calls from frontend (from your app or website) create read-only API key. These type of keys cannot perform wallet points, coupon rewards, user creation, updations etc. They are designed to fetch info and redeem requests. (Use these type of API keys with the WebSDK or frontend)