Skip to content

API reference

Everything the app does travels this API: the web app never talks to the database directly, so there is no back door a script misses. Below are all 757 endpoints, grouped by area, each with the permission your key has to carry.

How to mint a key, and how errors, paging and rate limits work, is in REST API. This page is the map; that page is the manual.

Three groups of endpoints are deliberately left out, the same three that never become MCP tools: the installation console (/instance), the cloud provisioning routes, and the first-run wizard (/setup). They are not part of an agency workspace, and they are gated on a different axis from the permissions below.