To generate a restricted key:
- Login to Stripe
- Generate a restricted key
- Click on "Developers"
- Click on "API Keys"
- Click on "+ Restricted Key"
- Enter a key name (ex: "Sales Cookie")
- Select read-only permissions for specific entities

Here are our recommendations in terms of selecting entities:
- We recommend providing read only access to the following entities as they are commonly used in commission calculations (the exact list depends on your commission structure and the underlying required data):
- Customers
- Credit notes
- Charges
- Events
- Invoices
- Orders
- Payment Intents
- Prices
- Products
- Radar Reviews
- SKUs
- Sources
- Subscriptions
- Transactions
- Balance
- Balance Transaction Sources
- Tax Rates
- Tax Calculations and Transactions
- Tax Settings and Registrations
- You may also want to enable read only access to the following optional entities (this depends on your commission structure):
- Authorizations
- Customer session
- Cards
- Cardholders
- Coupons
- Disputes
- Quotes
- We typically do not not require access to the following entities:
- Tokens
- Token Network Data
- Payment Methods (unless you need this information for commissions)
- Login Links
- Payment Links
- Payouts
- Files
- Funding Instructions
- Transfers
- Apple Pay domains
- Ephemeral keys
- Connection Tokens
- Webhook Endpoints
- Report Runs and Report Types
- Debugging tools
To keep it simple, you can enable broad read-only access to the following categories:
- Core
- To access Customers, Products, Payment Intents, etc.
- Billing
- To access to Credit Notes, Invoices, etc.
- Connect
- To access Accounts
- Orders
- Required if invoices are linked to orders
- Payment Records
- To access the payments
- Radar
- Charges typically have links to Radar reviews, so it's not possible to retrieve charges details without this permission
- Tax
- Access to tax rates and settings
You can then enter the secret restricted API key in Sales Cookie under Settings > Connections > Stripe.
To learn more about connections, click here.
To learn more about managing synchronizations, click here.
To learn more about importing transactions, click here.