简体中文
API reference

API Reference

The first reviewed public API operation catalog.

This catalog contains 64 public-only operations explicitly released by API CI. Its catalog, authentication, and schemas come only from the same artifact; every route not listed here remains private.

  • API source commit: fea64ddee8d29d0f9296de5b046cb26ce0a96cdf
  • OpenAPI SHA-256: 989e09de11d6a1accdf647db33b9b1dc24141458771dc4a69bc99ca8c083c2f0
  • OpenAPI: 3.1.0

Storefront public reads(14)

Official account and challenge endpoints(5)

Installation identity and readiness(2)

Hosted sessions and official browser flow(10)

API Key catalog reads(4)

Storefront carts and quotes(13)

Storefront orders and after-sales(6)

Installation Webhooks(7)

OAuth PKCE and DPoP(3)

Published boundary

The artifact now includes OAuth PKCE/DPoP, installation Webhooks, cart quotes, and order read/cancellation/after-sales operations. Final order creation, payment execution, and a dedicated refund operation are not declared; hosted-checkout complete/continue is bound to the official session and CSRF and is not a third-party public API. This site invents no path or example for these capabilities.

Authoritative blockers

These statuses come from the same public-only artifact. They explain why a capability is not available; they do not imply that an endpoint exists.

CapabilityCurrent blocker
Installation write APIA sender-constrained installation credential is required
Final order creationA reviewed public final-order contract is still required
Production activationExternal readiness has not been proven
Copyright © 2026