Skip to main content

Quickstart

From zero to a validated key in five steps.

1. Create a project

Sign in to the dashboard and create a project. You only need a name. Grab two values from the project page:
  • Project ID — public, e.g. 2Q9V222NTI2WJ45N. Sent in every request.
  • Auth Secret — 48 hex chars. Signs requests, verifies responses. Treat it like a password; it ships only inside obfuscated scripts.

2. Embed the keycheck

Two ways to get a validated script: Vampauth SDK (no code) — upload your script in Scripts, link it to the project, and pick the default Vampauth SDK mode. Share the generated snippet:
The launcher validates the key before your code runs — obfuscation included automatically. Reference client — embed the check yourself:
For testing only — production scripts embed the client and get obfuscated (step 5).

3. Configure checkpoints

Optional, for free/public projects: add checkpoints (third-party ad/offer links) under project settings. End users complete them before a key is issued. Set how many are required and the key duration.

4. Issue a key

Create one manually on the project page, or let the checkpoint flow generate keys. Keep an FFA (never-expires, unbound) key around for testing.

5. Validate — or just trust the client

Raw contract, if you’re building your own client:
A 200 isn’t enough — verify the response signature before trusting it. The reference client does this for you and fails closed.

6. Protect the script

Embed the keycheck in the script source, then obfuscate with script protection or your own tool. The auth secret has no protection outside obfuscation — that’s the model.