hosting

GET /v1/sites/{siteId}/wp-credentials

The WordPress admin login for a site.

Bütün hosting nöqtələri

Bütün tərtibatçı sənədləri

Doğrulama

API açarını bearer token kimi göndərin. Açar sites.view icazəsinə malik olmalıdır; bu icazəsi olmayan açar 404 deyil, 403 xətası ilə rədd edilir.

Bu endpoint heç bir təşkilat ID-si tələb etmir. Sizin açarınız artıq aid olduğu təşkilatı müəyyən edir və cavab həmin təşkilat üçün məhdudlaşdırılır.

Sınaqdan keçir

Bucaqlı mötərizələrdə olan hór şeyi öz qiymətlərinizlə, açar yertutucusunu isə idarə panelinizdən bir açarla əvəz edin.

curl -X GET https://api.zinndigital.com/v1/sites/{siteId}/wp-credentials \
  -H "Authorization: Bearer zdk_live_…"

Sistemə daxil olmusunuz? İdarə panelinizdəki API konsolu real təşkilatınızın identifikatorunu və öz açarınızı avtomatik doldurur, sorğunu canlı API-yə qarşı icra edir ki, siz faktiki cavabı görə biləsiniz. Bu son nöqtəni API konsolunda açın

Təfərrüatlar

Requires sites.view and sites.panel_access — the key that already means "a customer reaching their own site". Every read is audit-logged: a password revealed by session alone is only safe if looking at it is attributable. Re-reads the site's own wp_users row before answering, so the screen a human is looking at is never stale. A site that cannot be reached is not an error: the stored record is returned unchanged and checked_at says when the platform last managed to look.

Parametrlər

AdTipTələb olunurNədir
siteId (path)UuidBəliSite ID (UUIDv7).

Cavab

AdTipTələb olunurNədir
site_idUuidBəliUUIDv7 identifier — sortable by creation time (docs/02 §8).
usernamestringBəliThis site's own admin username, re-read from the site's wp_users row on every request. A customer who renames the account in phpMyAdmin, wp-admin or wp-cli sees the new name…
emailstringBəliwp_users.user_email on the site itself — where a WordPress password reset would actually go. Empty until the platform has managed to read one.
passwordstringBəliThe current password, or empty when it cannot be shown — see can_reveal. It is derived from a platform key and the site's rotation epoch, never stored, so there is no per-site…
can_revealbooleanBəliFalse when the customer set their own password (nothing of ours to show) or the environment has no signing key. Rotating makes it true again.
is_custombooleanBəliThe password in use was set by the customer through this app, so there is nothing of ours to show. Distinct from changed_outside_app.
changed_outside_appbooleanBəliProven: the password the platform holds no longer opens the site, so it was changed outside of the Zinn Digital® Hosting App — phpMyAdmin, wp-admin or wp-cli. WordPress stores…
checked_atstringBəliWhen the platform last managed to LOOK at the site's admin row. Null means never.
verified_atstringBəliWhen the platform last PROVED these credentials are the live ones. Null means never. Deliberately separate from checked_at: "we have not been able to reach this site for a week"…
login_urlstringBəliWhere to sign in.

Bu son nöqtənin qaytara biləcəyi xətalar

401 · 403 · 404 · 422 · 429