Skip to content

Changelog

What changed in the API, and how we tell you before anything is removed.

v1.125 Sep 2026

Security: OAuth 2.0 access tokens (client credentials), IP allowlists, key expiry with a reminder email, the OpenAPI 3.1 document, RFC 6750 WWW-Authenticate answers, and stricter requests (credentials only in the Authorization header, JSON bodies only, a per-address limit on failed authentications).

v1.024 Sep 2026

First public version: businesses and ProofScore, reviews and replies, invitations, products and 8 webhook events.

We give 6 months' notice before removing anything, and email every key owner.

Cookie settings

EssentialLog in, security and fraud checks
PreferencesRemember your country
AnalyticsNot used. We'll ask before we ever add any.