Paths on this page are relative to /api/liquidity-studio/v2. Authentication and required headers vary by operation.
API reference overview · OpenAPI download
Operations on this page#
| Method | Path | Operation |
|---|---|---|
GET |
/public/discovery/search |
searchDiscoveredProjects |
GET |
/public/discovery/market/{id} |
getDiscoveredProjectMarket |
GET |
/public/discovery/capabilities |
getMarketDiscoveryCapabilities |
GET |
/workflows/context |
getWorkflowContext |
GET |
/workflows/runs |
listCompletedWorkflowRuns |
GET |
/workflows/runs/{id} |
getCompletedWorkflowRun |
POST |
/workflows/run |
runWorkflowResearch |
GET |
/virtuals-projects |
listSavedVirtualsProjects |
POST |
/virtuals-projects |
saveVirtualsProject |
GET |
/virtuals-projects/{id} |
getSavedVirtualsProject |
DELETE |
/virtuals-projects/{id} |
removeSavedVirtualsProject |
GET |
/partner-consent-options |
getPartnerConsentOptions |
GET |
/partner-preparation-contexts/{partnerId} |
getPartnerPreparationContext |
GET |
/partner-preparation-receipts/{partnerId} |
getPartnerPreparationReceiptRecovery |
GET |
/partner-preparations |
listPartnerPreparations |
POST |
/partner-preparations/{eventId}/import |
importPartnerPreparation |
POST |
/partner-preparations/{eventId}/decline |
declinePartnerPreparation |
GET |
/partner-preparation-status/{partnerId}/{eventId} |
getPartnerPreparationStatus |
GET |
/partner-domain-challenges |
listPartnerDomainChallenges |
POST |
/partner-domain-challenges |
createPartnerDomainChallenge |
GET |
/partner-domain-challenges/{id} |
getPartnerDomainChallenge |
GET |
/partner-domain-challenges/{id}/status |
getPartnerDomainStatus |
POST |
/partner-domain-challenges/{id}/verify |
verifyPartnerDomainChallenge |
POST |
/partner-domain-challenges/{id}/provision |
provisionPartnerDomainChallenge |
POST |
/partner-domain-challenges/{id}/revoke |
revokePartnerDomainChallenge |
Search supported public Virtuals project identities#
GET /public/discovery/search
Operation ID: searchDiscoveredProjects
Authentication: No authentication is required by this operation’s contract.
Anonymous provider-reported public market evidence. No issuer ownership, finalized onchain proof, trade execution, custody or publication authority is established.
Parameters#
| Name | Location | Required | Type | Description and constraints |
|---|---|---|---|---|
q |
query | Yes | string |
Min length: 2; Max length: 200 |
page |
query | No | integer |
Default: 1; Minimum: 1; Maximum: 100 |
Responses#
| Status | Description | Content type and schema |
|---|---|---|
200 |
Search supported public Virtuals project identities | application/json: object |
default |
Invalid input, access denied, source/storage failure or deadline exceeded. Workspace authentication errors may use the shared API envelope; bounded route failures expose a message. Rate-limit responses may be plain text. | application/json: Exactly one of: WorkflowRequestError; WorkflowRateLimitError; object; text/plain: string; text/html: string |
200 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
200 application/json body
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
data |
Yes | MarketDiscoverySearch | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
default application/json body
Exactly one of: WorkflowRequestError; WorkflowRateLimitError; object
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
oneOf[3].error |
Yes | ApiError | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
default text/plain body
string — Format: binary
default text/html body
string — Format: binary
Read provider-reported project pools and market figures#
GET /public/discovery/market/{id}
Operation ID: getDiscoveredProjectMarket
Authentication: No authentication is required by this operation’s contract.
Anonymous provider-reported public market evidence. No issuer ownership, finalized onchain proof, trade execution, custody or publication authority is established.
Parameters#
| Name | Location | Required | Type | Description and constraints |
|---|---|---|---|---|
id |
path | Yes | integer |
Minimum: 1; Maximum: 9007199254740991 |
Responses#
| Status | Description | Content type and schema |
|---|---|---|
200 |
Read provider-reported project pools and market figures | application/json: object |
default |
Invalid input, access denied, source/storage failure or deadline exceeded. Workspace authentication errors may use the shared API envelope; bounded route failures expose a message. Rate-limit responses may be plain text. | application/json: Exactly one of: WorkflowRequestError; WorkflowRateLimitError; object; text/plain: string; text/html: string |
200 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
200 application/json body
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
data |
Yes | MarketDiscoveryEvidence | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
default application/json body
Exactly one of: WorkflowRequestError; WorkflowRateLimitError; object
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
oneOf[3].error |
Yes | ApiError | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
default text/plain body
string — Format: binary
default text/html body
string — Format: binary
Read configured research capability availability#
GET /public/discovery/capabilities
Operation ID: getMarketDiscoveryCapabilities
Authentication: No authentication is required by this operation’s contract.
Anonymous provider-reported public market evidence. No issuer ownership, finalized onchain proof, trade execution, custody or publication authority is established.
This operation declares no parameters.
Responses#
| Status | Description | Content type and schema |
|---|---|---|
200 |
Read configured research capability availability | application/json: object |
default |
Invalid input, access denied, source/storage failure or deadline exceeded. Workspace authentication errors may use the shared API envelope; bounded route failures expose a message. Rate-limit responses may be plain text. | application/json: Exactly one of: WorkflowRequestError; WorkflowRateLimitError; object; text/plain: string; text/html: string |
200 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant no-store |
— |
200 application/json body
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
data |
Yes | MarketDiscoveryCapabilities | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
default application/json body
Exactly one of: WorkflowRequestError; WorkflowRateLimitError; object
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
oneOf[3].error |
Yes | ApiError | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
default text/plain body
string — Format: binary
default text/html body
string — Format: binary
List authorized vault choices and saved-research availability#
GET /workflows/context
Operation ID: getWorkflowContext
Authentication: __Host-klineo_session cookie (sessionCookie)
Requires current interactive session and workspace membership; service credentials are not accepted unless an explicit service scope is declared. Research and directory bookmarks grant no signing, custody or execution authority.
Parameters#
| Name | Location | Required | Type | Description and constraints |
|---|---|---|---|---|
x-klineo-organization-id |
header | Yes | string |
Min length: 1; Max length: 160 |
Responses#
| Status | Description | Content type and schema |
|---|---|---|
200 |
List authorized vault choices and saved-research availability | application/json: object |
default |
Invalid input, access denied, source/storage failure or deadline exceeded. Workspace authentication errors may use the shared API envelope; bounded route failures expose a message. Rate-limit responses may be plain text. | application/json: Exactly one of: WorkflowRequestError; WorkflowRateLimitError; object; text/plain: string; text/html: string |
200 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
200 application/json body
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
data |
Yes | WorkflowContext | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
default application/json body
Exactly one of: WorkflowRequestError; WorkflowRateLimitError; object
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
oneOf[3].error |
Yes | ApiError | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
default text/plain body
string — Format: binary
default text/html body
string — Format: binary
List completed research saved for the current workspace and reader#
GET /workflows/runs
Operation ID: listCompletedWorkflowRuns
Authentication: __Host-klineo_session cookie (sessionCookie)
Requires current interactive session and workspace membership; service credentials are not accepted unless an explicit service scope is declared. Research and directory bookmarks grant no signing, custody or execution authority.
Parameters#
| Name | Location | Required | Type | Description and constraints |
|---|---|---|---|---|
x-klineo-organization-id |
header | Yes | string |
Min length: 1; Max length: 160 |
cursor |
query | No | string |
Pattern: ^[A-Za-z0-9_-]+$; Max length: 1024 |
limit |
query | No | integer |
Default: 20; Minimum: 1; Maximum: 20 |
Responses#
| Status | Description | Content type and schema |
|---|---|---|
200 |
List completed research saved for the current workspace and reader | application/json: object |
default |
Invalid input, access denied, source/storage failure or deadline exceeded. Workspace authentication errors may use the shared API envelope; bounded route failures expose a message. Rate-limit responses may be plain text. | application/json: Exactly one of: WorkflowRequestError; WorkflowRateLimitError; object; text/plain: string; text/html: string |
200 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
200 application/json body
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
data |
Yes | CompletedWorkflowPage | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
default application/json body
Exactly one of: WorkflowRequestError; WorkflowRateLimitError; object
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
oneOf[3].error |
Yes | ApiError | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
default text/plain body
string — Format: binary
default text/html body
string — Format: binary
Read one immutable research result saved for the current reader#
GET /workflows/runs/{id}
Operation ID: getCompletedWorkflowRun
Authentication: __Host-klineo_session cookie (sessionCookie)
Requires current interactive session and workspace membership; service credentials are not accepted unless an explicit service scope is declared. Research and directory bookmarks grant no signing, custody or execution authority.
Parameters#
| Name | Location | Required | Type | Description and constraints |
|---|---|---|---|---|
x-klineo-organization-id |
header | Yes | string |
Min length: 1; Max length: 160 |
id |
path | Yes | string |
Pattern: ^[0-9a-f]{64}$ |
Responses#
| Status | Description | Content type and schema |
|---|---|---|
200 |
Read one immutable research result saved for the current reader | application/json: object |
default |
Invalid input, access denied, source/storage failure or deadline exceeded. Workspace authentication errors may use the shared API envelope; bounded route failures expose a message. Rate-limit responses may be plain text. | application/json: Exactly one of: WorkflowRequestError; WorkflowRateLimitError; object; text/plain: string; text/html: string |
200 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
200 application/json body
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
data |
Yes | CompletedWorkflowRun | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
default application/json body
Exactly one of: WorkflowRequestError; WorkflowRateLimitError; object
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
oneOf[3].error |
Yes | ApiError | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
default text/plain body
string — Format: binary
default text/html body
string — Format: binary
Complete a bounded read-only liquidity research question#
POST /workflows/run
Operation ID: runWorkflowResearch
Authentication: __Host-klineo_session cookie (sessionCookie)
Requires current interactive session and workspace membership; service credentials are not accepted unless an explicit service scope is declared. Research and directory bookmarks grant no signing, custody or execution authority. The JSON request is limited to 48 KiB. Up to six prior question/answer pairs provide conversational context, not evidence. New evidence is fetched server-side; successful production runs are saved for the current reader. AI output remains a proposal for human review.
Parameters#
| Name | Location | Required | Type | Description and constraints |
|---|---|---|---|---|
x-klineo-organization-id |
header | Yes | string |
Min length: 1; Max length: 160 |
Request body#
Required: yes.
application/json
Responses#
| Status | Description | Content type and schema |
|---|---|---|
200 |
Complete a bounded read-only liquidity research question | application/json: object |
default |
Invalid input, access denied, source/storage failure or deadline exceeded. Workspace authentication errors may use the shared API envelope; bounded route failures expose a message. Rate-limit responses may be plain text. | application/json: Exactly one of: WorkflowRequestError; WorkflowRateLimitError; object; text/plain: string; text/html: string |
200 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
200 application/json body
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
data |
Yes | WorkflowResearchResponse | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
default application/json body
Exactly one of: WorkflowRequestError; WorkflowRateLimitError; object
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
oneOf[3].error |
Yes | ApiError | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
default text/plain body
string — Format: binary
default text/html body
string — Format: binary
List workspace Virtuals directory bookmarks#
GET /virtuals-projects
Operation ID: listSavedVirtualsProjects
Authentication: __Host-klineo_session cookie (sessionCookie)
Requires current interactive session and workspace membership; service credentials are not accepted unless an explicit service scope is declared. Research and directory bookmarks grant no signing, custody or execution authority.
Parameters#
| Name | Location | Required | Type | Description and constraints |
|---|---|---|---|---|
x-klineo-organization-id |
header | Yes | string |
Min length: 1; Max length: 160 |
cursor |
query | No | string |
Pattern: ^[A-Za-z0-9_-]+$; Max length: 1024 |
limit |
query | No | integer |
Default: 20; Minimum: 1; Maximum: 20 |
Responses#
| Status | Description | Content type and schema |
|---|---|---|
200 |
List workspace Virtuals directory bookmarks | application/json: object |
default |
Invalid input, access denied, source/storage failure or deadline exceeded. Workspace authentication errors may use the shared API envelope; bounded route failures expose a message. Rate-limit responses may be plain text. | application/json: Exactly one of: WorkflowRequestError; WorkflowRateLimitError; object; text/plain: string; text/html: string |
200 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
200 application/json body
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
data |
Yes | SavedVirtualsProjectPage | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
default application/json body
Exactly one of: WorkflowRequestError; WorkflowRateLimitError; object
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
oneOf[3].error |
Yes | ApiError | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
default text/plain body
string — Format: binary
default text/html body
string — Format: binary
Save an independently resolved Virtuals directory bookmark#
POST /virtuals-projects
Operation ID: saveVirtualsProject
Authentication: __Host-klineo_session cookie (sessionCookie)
Requires current interactive session and workspace membership; service credentials are not accepted unless an explicit service scope is declared. Research and directory bookmarks grant no signing, custody or execution authority. The JSON request is limited to 4 KiB and accepts only the selected Virtuals ID. Project identity is retrieved server-side; duplicate saves return the original record with replayed=true. This route uses native bookmark replay rather than an Idempotency-Key header.
Parameters#
| Name | Location | Required | Type | Description and constraints |
|---|---|---|---|---|
x-klineo-organization-id |
header | Yes | string |
Min length: 1; Max length: 160 |
Request body#
Required: yes.
application/json
Responses#
| Status | Description | Content type and schema |
|---|---|---|
200 |
Save an independently resolved Virtuals directory bookmark | application/json: object |
default |
Invalid input, access denied, source/storage failure or deadline exceeded. Workspace authentication errors may use the shared API envelope; bounded route failures expose a message. Rate-limit responses may be plain text. | application/json: Exactly one of: WorkflowRequestError; WorkflowRateLimitError; object; text/plain: string; text/html: string |
200 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
200 application/json body
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
data |
Yes | SaveVirtualsProjectReceipt | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
default application/json body
Exactly one of: WorkflowRequestError; WorkflowRateLimitError; object
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
oneOf[3].error |
Yes | ApiError | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
default text/plain body
string — Format: binary
default text/html body
string — Format: binary
Read a workspace Virtuals directory bookmark#
GET /virtuals-projects/{id}
Operation ID: getSavedVirtualsProject
Authentication: __Host-klineo_session cookie (sessionCookie)
Requires current interactive session and workspace membership; service credentials are not accepted unless an explicit service scope is declared. Research and directory bookmarks grant no signing, custody or execution authority.
Parameters#
| Name | Location | Required | Type | Description and constraints |
|---|---|---|---|---|
x-klineo-organization-id |
header | Yes | string |
Min length: 1; Max length: 160 |
id |
path | Yes | integer |
Minimum: 1; Maximum: 9007199254740991 |
Responses#
| Status | Description | Content type and schema |
|---|---|---|
200 |
Read a workspace Virtuals directory bookmark | application/json: object |
default |
Invalid input, access denied, source/storage failure or deadline exceeded. Workspace authentication errors may use the shared API envelope; bounded route failures expose a message. Rate-limit responses may be plain text. | application/json: Exactly one of: WorkflowRequestError; WorkflowRateLimitError; object; text/plain: string; text/html: string |
200 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
200 application/json body
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
data |
Yes | SavedVirtualsProject | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
default application/json body
Exactly one of: WorkflowRequestError; WorkflowRateLimitError; object
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
oneOf[3].error |
Yes | ApiError | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
default text/plain body
string — Format: binary
default text/html body
string — Format: binary
Remove the exact reviewed Virtuals directory bookmark generation#
DELETE /virtuals-projects/{id}
Operation ID: removeSavedVirtualsProject
Authentication: __Host-klineo_session cookie (sessionCookie)
Requires current interactive session and workspace membership; service credentials are not accepted unless an explicit service scope is declared. Research and directory bookmarks grant no signing, custody or execution authority. Send expectedResourceVersion in the JSON body. If-Match and Idempotency-Key headers are not used by this route; a stale generation fails with 412.
Parameters#
| Name | Location | Required | Type | Description and constraints |
|---|---|---|---|---|
x-klineo-organization-id |
header | Yes | string |
Min length: 1; Max length: 160 |
id |
path | Yes | integer |
Minimum: 1; Maximum: 9007199254740991 |
Request body#
Required: yes.
application/json
Responses#
| Status | Description | Content type and schema |
|---|---|---|
200 |
Remove the exact reviewed Virtuals directory bookmark generation | application/json: object |
default |
Invalid input, access denied, source/storage failure or deadline exceeded. Workspace authentication errors may use the shared API envelope; bounded route failures expose a message. Rate-limit responses may be plain text. | application/json: Exactly one of: WorkflowRequestError; WorkflowRateLimitError; object; text/plain: string; text/html: string |
200 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
200 application/json body
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
data |
Yes | RemoveVirtualsProjectReceipt | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
default application/json body
Exactly one of: WorkflowRequestError; WorkflowRateLimitError; object
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
oneOf[3].error |
Yes | ApiError | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
default text/plain body
string — Format: binary
default text/html body
string — Format: binary
Review the current partner declarations for this explicitly assigned issuer#
GET /partner-consent-options
Operation ID: getPartnerConsentOptions
Authentication: __Host-klineo_session cookie (sessionCookie)
Parameters#
| Name | Location | Required | Type | Description and constraints |
|---|---|---|---|---|
x-klineo-organization-id |
header | Yes | string |
— |
partnerId |
query | Yes | string |
— |
partnerOrganizationId |
query | Yes | string |
— |
Responses#
| Status | Description | Content type and schema |
|---|---|---|
200 |
Current partner declarations and exact configuration generation | application/json: object |
403 |
Issuer assignment or authority absent | No response body declared |
200 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
ETag |
Yes | string |
— |
Cache-Control |
Yes | Constant private, no-store |
— |
200 application/json body
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
data |
Yes | PartnerConsentOptions | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
403 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
Read the exact current actor-scoped consent for preparing an issuer packet#
GET /partner-preparation-contexts/{partnerId}
Operation ID: getPartnerPreparationContext
Authentication: __Host-klineo_session cookie (sessionCookie)
Parameters#
| Name | Location | Required | Type | Description and constraints |
|---|---|---|---|---|
x-klineo-organization-id |
header | Yes | string |
— |
partnerId |
path | Yes | string |
— |
issuerOrganizationId |
query | Yes | string |
— |
Responses#
| Status | Description | Content type and schema |
|---|---|---|
200 |
Current partner and consent generations | application/json: object |
403 |
Current bilateral preparation authority absent | No response body declared |
200 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
ETag |
Yes | string |
— |
Cache-Control |
Yes | Constant private, no-store |
— |
200 application/json body
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
data |
Yes | PartnerPreparationContext | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
403 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
Recover the initiating partner actor's durable preparation receipt using its original operation key#
GET /partner-preparation-receipts/{partnerId}
Operation ID: getPartnerPreparationReceiptRecovery
Authentication: __Host-klineo_session cookie (sessionCookie)
Read-only recovery for the original authenticated actor and partner organization. Current organization membership, active partner configuration, named proposal-preparer declaration and active bilateral proposal-preparation grant are required. ACCEPTED requires a completed v2 Idempotency-Key-bound preparation operation with original HTTP 202 status and an immutable preparation event matching the actor, organization, partner and issuer target. Receipt consent and partner-generation metadata describe the committed event and may differ from the currently authorized consent. Missing, in-flight, failed, unsupported or unverifiable completions return UNRESOLVED. Neither state admits or retries a preparation. The response discloses no proposal packet or audit reason.
Parameters#
| Name | Location | Required | Type | Description and constraints |
|---|---|---|---|---|
x-klineo-organization-id |
header | Yes | string |
— |
partnerId |
path | Yes | string |
— |
issuerOrganizationId |
query | Yes | string |
— |
Idempotency-Key |
header | Yes | string |
The exact Idempotency-Key header used for the original preparation POST; never a new recovery operation key. Min length: 8; Max length: 160 |
Responses#
| Status | Description | Content type and schema |
|---|---|---|
200 |
Verified committed receipt or unresolved operation; never evidence that a new preparation is safe | application/json: object |
400 |
Missing or invalid original operation key or issuer target | No response body declared |
401 |
Interactive authentication required | No response body declared |
403 |
Current actor-scoped bilateral preparation authority absent | No response body declared |
200 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
200 application/json body
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
data |
Yes | PartnerPreparationReceiptRecovery | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
400 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
401 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
403 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
Read consent-bound partner packets awaiting or completed in issuer review#
GET /partner-preparations
Operation ID: listPartnerPreparations
Authentication: __Host-klineo_session cookie (sessionCookie)
Parameters#
| Name | Location | Required | Type | Description and constraints |
|---|---|---|---|---|
x-klineo-organization-id |
header | Yes | string |
— |
Responses#
| Status | Description | Content type and schema |
|---|---|---|
200 |
Issuer-owned preparation inbox | application/json: object |
200 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
200 application/json body
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
data |
Yes | Array of PartnerPreparationInboxEntry | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
Import a current consent-bound partner packet as an approval-empty issuer proposal#
POST /partner-preparations/{eventId}/import
Operation ID: importPartnerPreparation
Authentication: __Host-klineo_session cookie (sessionCookie)
Parameters#
| Name | Location | Required | Type | Description and constraints |
|---|---|---|---|---|
Idempotency-Key |
header | Yes | string |
Min length: 8; Max length: 160 |
x-klineo-organization-id |
header | Yes | string |
— |
eventId |
path | Yes | string |
— |
If-Match |
header | Yes | string |
Pattern: ^"[^"\\ ]+"$ |
Request body#
Required: yes.
application/json
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
reason |
Yes | string |
Min length: 3; Max length: 500 |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
Responses#
| Status | Description | Content type and schema |
|---|---|---|
200 |
Issuer-owned proposal and immutable import decision | application/json: object |
403 |
Authority or current bilateral consent absent | No response body declared |
409 |
Preparation already decided or unavailable | No response body declared |
412 |
Consent generation changed | No response body declared |
200 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
200 application/json body
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
data |
Yes | PartnerPreparationDecisionResult | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
403 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
409 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
412 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
Record an issuer decline of an exact current consent-bound partner packet#
POST /partner-preparations/{eventId}/decline
Operation ID: declinePartnerPreparation
Authentication: __Host-klineo_session cookie (sessionCookie)
Parameters#
| Name | Location | Required | Type | Description and constraints |
|---|---|---|---|---|
Idempotency-Key |
header | Yes | string |
Min length: 8; Max length: 160 |
x-klineo-organization-id |
header | Yes | string |
— |
eventId |
path | Yes | string |
— |
If-Match |
header | Yes | string |
Pattern: ^"[^"\\ ]+"$ |
Request body#
Required: yes.
application/json
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
reason |
Yes | string |
Min length: 3; Max length: 500 |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
Responses#
| Status | Description | Content type and schema |
|---|---|---|
200 |
Immutable decline decision without a proposal import | application/json: object |
403 |
Authority or current bilateral consent absent | No response body declared |
409 |
Preparation already decided or unavailable | No response body declared |
412 |
Consent generation changed | No response body declared |
200 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
200 application/json body
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
data |
Yes | PartnerPreparationDecisionResult | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
403 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
409 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
412 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
Read partner-owned delivery and issuer review status for one exact packet#
GET /partner-preparation-status/{partnerId}/{eventId}
Operation ID: getPartnerPreparationStatus
Authentication: __Host-klineo_session cookie (sessionCookie)
Parameters#
| Name | Location | Required | Type | Description and constraints |
|---|---|---|---|---|
x-klineo-organization-id |
header | Yes | string |
— |
partnerId |
path | Yes | string |
— |
eventId |
path | Yes | string |
— |
issuerOrganizationId |
query | Yes | string |
— |
Responses#
| Status | Description | Content type and schema |
|---|---|---|
200 |
Reduced delivery and issuer decision state | application/json: object |
403 |
Current partner actor or consent absent | No response body declared |
404 |
Preparation absent | No response body declared |
200 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
200 application/json body
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
data |
Yes | PartnerPreparationStatus | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
403 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
404 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
List tenant-owned domain ownership and HTTPS onboarding challenges#
GET /partner-domain-challenges
Operation ID: listPartnerDomainChallenges
Authentication: __Host-klineo_session cookie (sessionCookie)
Returns at most 1000 challenges, newest first, in the current organization and optionally the selected partner. To read older challenges, pass the last returned challenge ID as beforeChallengeId while retaining the same partner filter. A page with fewer than 1000 entries ends traversal. An unknown cursor or a cursor outside the current organization or selected partner returns an empty array without disclosing its existence. This directory read neither verifies domain ownership nor admits a partner configuration.
Parameters#
| Name | Location | Required | Type | Description and constraints |
|---|---|---|---|---|
x-klineo-organization-id |
header | Yes | string |
— |
partnerId |
query | No | string |
Restrict challenges to this partner in the current organization. Pattern: ^[a-zA-Z0-9][a-zA-Z0-9:_-]{2,159}$; Min length: 3; Max length: 160 |
beforeChallengeId |
query | No | string |
Last challenge ID from the preceding page; return only older challenges in the same organization and partner filter. Format: uuid |
Responses#
| Status | Description | Content type and schema |
|---|---|---|
200 |
Bounded domain challenge array in the current organization; no pagination metadata | application/json: object |
400 |
Invalid partner ID or challenge cursor | No response body declared |
403 |
Current organization domain administration authority absent | No response body declared |
200 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
200 application/json body
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
data |
Yes | Array of PartnerDomainChallenge | Max items: 1000 |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
400 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
403 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
Create an exact-host DNS ownership challenge for an approved domain verifier#
POST /partner-domain-challenges
Operation ID: createPartnerDomainChallenge
Authentication: __Host-klineo_session cookie (sessionCookie)
Parameters#
| Name | Location | Required | Type | Description and constraints |
|---|---|---|---|---|
Idempotency-Key |
header | Yes | string |
Min length: 8; Max length: 160 |
x-klineo-organization-id |
header | Yes | string |
— |
Request body#
Required: yes.
application/json
PartnerDomainChallengeCreateRequest
Responses#
| Status | Description | Content type and schema |
|---|---|---|
201 |
Durable DNS TXT challenge and expiry | application/json: object |
503 |
Approved signing provider unavailable | No response body declared |
201 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
201 application/json body
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
data |
Yes | PartnerDomainChallenge | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
503 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
Read one tenant-owned domain onboarding challenge#
GET /partner-domain-challenges/{id}
Operation ID: getPartnerDomainChallenge
Authentication: __Host-klineo_session cookie (sessionCookie)
Parameters#
| Name | Location | Required | Type | Description and constraints |
|---|---|---|---|---|
x-klineo-organization-id |
header | Yes | string |
— |
id |
path | Yes | string |
— |
Responses#
| Status | Description | Content type and schema |
|---|---|---|
200 |
Current domain challenge | application/json: object |
404 |
Challenge absent in this organization | No response body declared |
200 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
200 application/json body
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
data |
Yes | PartnerDomainChallenge | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
404 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
Check current DNS ownership, routing and HTTPS readiness#
GET /partner-domain-challenges/{id}/status
Operation ID: getPartnerDomainStatus
Authentication: __Host-klineo_session cookie (sessionCookie)
Parameters#
| Name | Location | Required | Type | Description and constraints |
|---|---|---|---|---|
x-klineo-organization-id |
header | Yes | string |
— |
id |
path | Yes | string |
— |
Responses#
| Status | Description | Content type and schema |
|---|---|---|
200 |
Observed readiness with exact check time | application/json: object |
404 |
Challenge absent in this organization | No response body declared |
503 |
DNS or hostname provider unavailable | No response body declared |
200 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
200 application/json body
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
data |
Yes | PartnerDomainStatus | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
404 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
503 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
Verify the exact DNS TXT response and obtain current signed domain evidence#
POST /partner-domain-challenges/{id}/verify
Operation ID: verifyPartnerDomainChallenge
Authentication: __Host-klineo_session cookie (sessionCookie)
Parameters#
| Name | Location | Required | Type | Description and constraints |
|---|---|---|---|---|
Idempotency-Key |
header | Yes | string |
Min length: 8; Max length: 160 |
x-klineo-organization-id |
header | Yes | string |
— |
id |
path | Yes | string |
— |
Request body#
Required: yes.
application/json
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
reason |
Yes | string |
Min length: 3; Max length: 500 |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
Responses#
| Status | Description | Content type and schema |
|---|---|---|
200 |
Verified challenge and signed evidence | application/json: object |
409 |
DNS TXT response absent or challenge expired | No response body declared |
412 |
Challenge state changed concurrently | No response body declared |
503 |
DNS or approved signer unavailable | No response body declared |
200 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
200 application/json body
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
data |
Yes | PartnerDomainChallenge | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
409 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
412 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
503 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
Provision a verified partner hostname through the configured HTTPS provider#
POST /partner-domain-challenges/{id}/provision
Operation ID: provisionPartnerDomainChallenge
Authentication: __Host-klineo_session cookie (sessionCookie)
Parameters#
| Name | Location | Required | Type | Description and constraints |
|---|---|---|---|---|
Idempotency-Key |
header | Yes | string |
Min length: 8; Max length: 160 |
x-klineo-organization-id |
header | Yes | string |
— |
id |
path | Yes | string |
— |
Request body#
Required: yes.
application/json
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
reason |
Yes | string |
Min length: 3; Max length: 500 |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
Responses#
| Status | Description | Content type and schema |
|---|---|---|
200 |
Current hostname provisioning state and required validation records | application/json: object |
409 |
Current verified ownership absent | No response body declared |
412 |
Challenge state changed concurrently | No response body declared |
503 |
Hostname provisioning unavailable | No response body declared |
200 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
200 application/json body
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
data |
Yes | PartnerDomainChallenge | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
409 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
412 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
503 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
Revoke an unbound domain challenge and remove its managed hostname#
POST /partner-domain-challenges/{id}/revoke
Operation ID: revokePartnerDomainChallenge
Authentication: __Host-klineo_session cookie (sessionCookie)
Parameters#
| Name | Location | Required | Type | Description and constraints |
|---|---|---|---|---|
Idempotency-Key |
header | Yes | string |
Min length: 8; Max length: 160 |
x-klineo-organization-id |
header | Yes | string |
— |
id |
path | Yes | string |
— |
Request body#
Required: yes.
application/json
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
reason |
Yes | string |
Min length: 3; Max length: 500 |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
Responses#
| Status | Description | Content type and schema |
|---|---|---|
200 |
Revoked challenge with signed evidence and hostname withdrawn | application/json: object |
409 |
An active partner configuration still binds this domain | No response body declared |
412 |
Challenge state changed concurrently | No response body declared |
503 |
Managed hostname removal unavailable | No response body declared |
200 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
200 application/json body
object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
data |
Yes | PartnerDomainChallenge | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
409 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
412 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |
503 response headers
| Header | Required | Type | Description and constraints |
|---|---|---|---|
Cache-Control |
Yes | Constant private, no-store |
— |