Generating an API key in MyTourist
Updated on 2026-10-01
Goal
You need an API key + base URL to read your MyTourist data through our migration wizard. The key only grants read access — we don't change anything in your MyTourist.
Step 1 — Log in to MyTourist
Go to app.mytourist.cloud and log in as the administrator of your property.
Step 2 — Navigate to Plugins → API
In the main menu on the left: Plugins → API. If you don't see the menu item, contact your MyTourist account manager (your role may not have API access).
Step 3 — Generate a new key
Click + New API key.
- Name: type
BedFlow migration— handy for finding it again later. - Permissions: tick read-only access for:
bookingsdebtorsinvoicesroomtypesproductsvoucherscalendar
- Write access: leave everything off. We don't need it and it is an unnecessary risk.
Click Create.
Step 4 — Copy the key (visible only once!)
MyTourist shows the key only once. Copy it straight away or write it down somewhere safe — if you close this window, you will never see it again and will have to generate a new one.
The key typically looks like this:
mt_live_KX9p7nRm2qLaY8wE1zU4vH6cI0sD9fG2jK4o
Step 5 — The base URL
For most accounts this is:
https://app.mytourist.cloud/api/v1
Only change this if MyTourist has explicitly given you a different address (e.g. enterprise customers on a dedicated subdomain).
Step 6 — Paste into BedFlow
At bedflow.eu/migrate (step 2 of the wizard), paste both values. Click Next — we test straight away whether the connection works. If there is an error, you get a clear message ("No connection — check your key and URL"); if it succeeds, you continue to the dry-run preview.
Security
- Keep your key safe: not in a Word document on your desktop, not in your mailbox.
- One key for BedFlow: create a separate key for BedFlow and don't use the same one as for other integrations. That way you can revoke this one key without affecting your other integrations.
- What do we do with it? After a successful import, we delete the key from the migration. It remains stored with your property, so that BedFlow can fetch new bookings from MyTourist during the parallel phase.
- Revoke the key once you switch over completely: delete it in MyTourist as soon as you no longer work in MyTourist. From then on, nobody can use it to read your MyTourist data.
What if I don't have API access?
Some MyTourist packages do not offer API access. Two options:
- Ask MyTourist support — for active customers, API access can usually be added at no cost.
- Book a free migration call with us. We'll help you request the right access, or you can transfer your reservations with a CSV export: see Importing your existing data.