How secure is the authentication "Private key in header" for API calls

Hello Bubblers,

I have a question related to Authentication when making API calls. You have many options, including Private Key in header. How safe is it to use the authentication Private Key in header to make a POST API call? Or perhaps better said: is it safe to use Private Key in header? How can you better secure it if it isn’t secure? Any tips would help me

