Operator API · v1
Consent-bound integration, documented end to end.
Use the machine contract, fixed privacy allowlist and operational guides below. API access requires an environment-specific BOT client certificate; the sandbox contains synthetic data only.
From idea to production
One visible path, with an explicit final activation.
- Register securely.Verify your email, create a passkey, and store the one-time recovery codes.
- Accept the current terms.The standard API license is non-commercial. Ads and every other monetization require a separate written agreement; mixed-source output needs item-level BOT attribution.
- Describe the integration.Add purpose, public policies, logo, linking URL, scopes, and the required BOT credit.
- Build in the sandbox.Use an environment-specific certificate and only synthetic orders, histories, revocations, vehicles, and statistics.
- Submit for review.BOT reviews the exact profile and scopes. Material changes create a new review version.
- Activate deliberately.After approval, the owner uses the prominent production activation button; approval alone never releases data.
- Operate and delete safely.Poll with cursors and ETags, process tombstones immediately, and acknowledge deletion.
Reference implementations
Production access requires manual BOT approval and a separate owner activation. A sandbox certificate can never access production data.