hosting
GET /v1/sites/{siteId}/wp-credentials
The WordPress admin login for a site.
Πισtoποίηση
Στείλτε ένα κλειδί API ως διακριτικό φορέα (bearer token). Το κλειδί πρέπει να διαθέτει το δικαίωμα sites.view· ένα κλειδί που δεν το διαθέτει απορρίπτεται με 403, όχι 404.
Αυτό το τελικό σημείο δεν δέχεται αναγνωριστικό οργανισμού. Το κλειδί σας προσδιορίζει ήδη τον οργανισμό στον οποίο ανήκει, και η απάντηση περιορίζεται σε αυτόν.
Δοκιμάστε το
Ατικatastήstε ό,τι βρίskεtai μέσα σe γώniaδeς μe τis δikές sas timές, kai to placeholder klεidioύ μe éna klεidi apó ton pinaka ελέgchou sas.
curl -X GET https://api.zinndigital.com/v1/sites/{siteId}/wp-credentials \
-H "Authorization: Bearer zdk_live_…"Συνδεθήκατε; Η κονσόλα API στον πίνακα ελέγχου σας συμπληρώνει το πραγματικό αναγνωριστικό του οργανισμού σας και το δικό σας κλειδί, και εκτελεί το αίτημα στο ζωντανό API, ώστε να μπορείτε να δείτε την πραγματική απόκριση. Ανοίξτε αυτό το τελικό σημείο στην κονσόλα API
Λεπτομέρειες
Requires sites.view and sites.panel_access — the key that already means "a customer reaching their own site". Every read is audit-logged: a password revealed by session alone is only safe if looking at it is attributable. Re-reads the site's own wp_users row before answering, so the screen a human is looking at is never stale. A site that cannot be reached is not an error: the stored record is returned unchanged and checked_at says when the platform last managed to look.
Παράμετροι
| Όνομα | Τύpος | Υποχρεωτικό | Τι είναι |
|---|---|---|---|
siteId (path) | Uuid | Ναι | Site ID (UUIDv7). |
Απάντηση
| Όνομα | Τύpος | Υποχρεωτικό | Τι είναι |
|---|---|---|---|
site_id | Uuid | Ναι | UUIDv7 identifier — sortable by creation time (docs/02 §8). |
username | string | Ναι | This site's own admin username, re-read from the site's wp_users row on every request. A customer who renames the account in phpMyAdmin, wp-admin or wp-cli sees the new name… |
email | string | Ναι | wp_users.user_email on the site itself — where a WordPress password reset would actually go. Empty until the platform has managed to read one. |
password | string | Ναι | The current password, or empty when it cannot be shown — see can_reveal. It is derived from a platform key and the site's rotation epoch, never stored, so there is no per-site… |
can_reveal | boolean | Ναι | False when the customer set their own password (nothing of ours to show) or the environment has no signing key. Rotating makes it true again. |
is_custom | boolean | Ναι | The password in use was set by the customer through this app, so there is nothing of ours to show. Distinct from changed_outside_app. |
changed_outside_app | boolean | Ναι | Proven: the password the platform holds no longer opens the site, so it was changed outside of the Zinn Digital® Hosting App — phpMyAdmin, wp-admin or wp-cli. WordPress stores… |
checked_at | string | Ναι | When the platform last managed to LOOK at the site's admin row. Null means never. |
verified_at | string | Ναι | When the platform last PROVED these credentials are the live ones. Null means never. Deliberately separate from checked_at: "we have not been able to reach this site for a week"… |
login_url | string | Ναι | Where to sign in. |
Σφάλματα που μπορεί να επιστρέψει αυτό το τελικό σημείο
401 · 403 · 404 · 422 · 429