Account setup
How to Get a Telegram API ID and API Hash
Follow Telegram’s official steps to create an API ID and API hash, connect an account, protect credentials, and avoid common setup mistakes.
What the API ID and API hash do
A Telegram API ID and API hash identify an application that connects through Telegram's MTProto API. They are separate from the one-time login code Telegram sends when you authorize an account. They are also different from a Bot API token.
When a tool connects as your user account, Telegram may require the application credentials, your phone number, a login code, and your two-step verification password if enabled.
Create credentials through Telegram’s official portal
- Sign in to Telegram using an official Telegram application.
- Visit my.telegram.org and log in with the same active phone number.
- Open API development tools.
- Complete the application form with an honest app name and purpose.
- Copy the API ID and API hash into the connection form you intend to use.
Telegram documents this process on its Creating your Telegram Application page. Telegram currently notes that each phone number can have one API ID connected to it.
Protect the API hash and session
Treat the API hash and resulting account session as sensitive credentials. Do not publish them in screenshots, commit them to a public repository, paste them into random bots, or share them with contractors who do not need account access.
Use a product that encrypts stored Telegram session data, restrict account access, and provides a clear disconnect action. If you suspect exposure, disconnect the session and review active Telegram devices.
Handle the Telegram login code carefully
Enter the login code only in the connection flow you intentionally started. Never send it to another person or Telegram chat. Telegram's authorization documentation explains that login attempts and codes are protected by platform limits.
If a connection attempt fails, do not request codes repeatedly. Check the phone number format, API credentials, two-step verification password, and whether another connection flow is still open.
What to do after the account connects
Give the account a recognizable label, sync only the groups you intend to manage, and run a small manual test in a group you control. Check the delivery log before building a larger campaign.
TG Auto Blaster lets a Free account connect one Telegram account and build a five-group campaign without a card. Use the campaign checklist before the first real send.
If Telegram reports an invalid API ID or hash, return to the official portal and compare the values carefully rather than creating repeated login attempts. If the code expires, start one fresh connection flow and close the old one. A two-step verification prompt requires the password configured inside Telegram, not the one-time code.
Once the test succeeds, review the connected devices in Telegram and remove sessions you no longer recognize or need. Then read the FloodWait guide before increasing activity on a newly connected account.
Put the workflow into practice
Start with one account, one campaign, five approved groups, and one manual blast per day. The Free plan needs no card, and your setup stays in place when you are ready to upgrade.
Start free — no card