Medusa Store API
x-publishable-api-key: <credential> Create a publishable API key in your Medusa application's admin using the API Keys functionality referenced in the docs and then use it when calling Store API routes that require a publishable key. The Store API reference documents publishable API key authentication under Store API. Because Medusa is self-hosted or tenant-hosted, key creation happens in your own Medusa admin instance rather than a shared medusajs.com console.
Authorization: Bearer <credential> Create a customer account in your own Medusa store and obtain a JWT by calling the Store API authentication route described in Store API authentication. The docs state you obtain the JWT by sending the customer's email and password to the authentication route, then use the returned token as a bearer token. This is issued by your own Medusa application.