Hetzner — add API token

Generate a Hetzner Cloud API token to enable Bring Your Own Keys provisioning.

Hetzner Cloud uses project-scoped API tokens. You generate one in the Hetzner Console, then paste it into StoreFrame's provider settings. Once registered, you can subscribe to a paid Project that provisions on your Hetzner account.

1. Open Hetzner Cloud Console

Sign in at https://console.hetzner.cloud/ and select (or create) the project you want StoreFrame to provision into.

Hetzner Cloud Console — project list view with a project selected

Hetzner API tokens are scoped to a single project. Environments that StoreFrame creates will appear inside whichever project the token belongs to. If you need environments in separate Hetzner projects, add one token per project.

2. Generate the API token

Inside the project, go to Security → API Tokens and click Generate API Token.

Two settings matter:

  • Description: Use something descriptive — for example, storeframe-prod. This label appears in your Hetzner audit log and makes it easy to identify what the token is used for.
  • Permissions: Select Read & Write. StoreFrame needs write access to create servers, attach volumes, and configure networking. A Read-only token will fail validation.
Hetzner Read & Write selected and description filled in

Click Generate API Token. Hetzner shows the token only once — copy it to your clipboard immediately before closing the dialog.

3. Paste into StoreFrame

In the Hub, go to Settings → Organization → Providers and click Add provider.

Fill in the form:

  • Cloud Provider: Select Hetzner
  • Name: A label for your reference — for example, Hetzner — prod project. This appears only in StoreFrame and helps you tell tokens apart if you add more than one.
  • API Token: Paste the token you copied in Step 2.
Hetzner selected, Name and API Token filled in

Click Save. StoreFrame validates the token against Hetzner's API. If validation fails, the most common cause is a token generated with Read-only permissions — generate a new one with Read & Write and try again.

Next

With a Hetzner token registered, you can subscribe to a paid Project from any trial environment. See billing trials for the conversion mechanics.

You can rotate or remove this token later from organization providers settings.

On this page