fingerprint-request-filtering
Fingerprint — Protect your public API key (request filtering)
Maps to the dashboard "Protect your public API key" Get Started step. The public API key ships in your client source, so anyone can read it. Request filtering rules make the key only usable from your apps, so a copied key can't rack up usage or pollute your data elsewhere.
This is configured in the dashboard against the environment's public key — there is no code change beyond keeping the agent's origin consistent.
Two separate things live under Security, and it's worth knowing which one you want: Web restricts who may use the key (origins, headers), below. Bots drops crawler traffic before it's billed — a different problem, covered under Filter crawler traffic.
Docs: AI bot filtering (https://docs.fingerprint.com/docs/ai-bot-filtering) · search bot filtering (https://docs.fingerprint.com/docs/search-bots-filtering)