OAuth 2.0
Token-based authentication for Brevo integrations that act on behalf of a user
Brevo OAuth 2.0 lets your application request access to a user’s Brevo account with their consent. The user authenticates directly with Brevo — your app never handles their password.
API key vs OAuth 2.0
How it works
Key concepts
OAuth apps are currently private only. A private app can only be authorized by users within your own Brevo organisation — it cannot be distributed to external users or listed in any marketplace. This makes it suitable for internal tools, automations, and integrations you build for your own team.
Support for public apps — where any Brevo user can authorize your integration — is planned for a future release.