When this happens
The key is valid, but its grant does not allow this request. Either theclientCode in the URL is unknown or not granted to the key, the grant lacks the scope this operation needs, or the request came from an address outside the grant’s IP allowlist. PayPathIQ returns the same error for each case so it does not reveal which Clients exist.
What to do
Check theclientCode and the scopes the operation needs. If you use an IP allowlist, check the calling address. Ask your PayPathIQ administrator to verify the grant.