OpenAI service-account-only keys, and Sume Format run limits

OpenAI admins can allow only service-account keys. On Sume, service-account keys cannot create Format runs or bulk queues; use a user-issued key.

4 min readSume
All posts

OpenAI now lets administrators allow only service-account keys, only user-owned project keys, or no new keys at all. On Sume the key type matters differently: service-account keys cannot create Format runs or bulk queues and fail with 403 insufficient_scope. If your org standardizes on service accounts, plan a separate key for Formats.

The OpenAI rule is from its changelog (Sep 15 entry); the Sume rule is from Bulk runs, read 2026-10-01.

What did OpenAI change?

API key creation governance controls exist at organization and project level. Organization restrictions take precedence over project settings, and existing API keys are unaffected.

Which Sume keys can submit Format runs?

The bulk-runs page lists the auth rules: a Bearer API key, formats:write to create a queue and formats:read to poll it, a key issued in the owning workspace for team-owned Formats, and, last, that service-account keys cannot create Format runs or bulk queues. They fail with 403 insufficient_scope and details.reason of service_account_format_runs_unsupported.

Key requirements for Format bulk runs, Sume docs, read 2026-10-01.
RequirementDetail
Create a queueformats:write
Poll a queueformats:read
Team-workspace FormatKey issued in that workspace
Service-account keyservice_account_format_runs_unsupported

What if my key predates the scope?

Scopes are fixed when a key is created and cannot be added later. A pre-Formats key calling a Format gets 403 insufficient_scope, never 404 format_not_found. Create a new key. More on diagnosing this is in Format run 403.

Do key types change concurrency?

Not according to these pages. Workspace generation concurrency still applies to the child runs of a bulk queue, whichever user key created it. Size concurrency (1-16) with that in mind; see bulk Format runs.

Sources

Related posts

More in Developers

All Developers posts

Written by Sume