identity

GET /v1/branding/by-panel-hostname

The brand served on one panel hostname.

Tous les points de terminaison identity

Authentification

Envoyez une clé d'API en tant que jeton du porteur (bearer token). Cet endpoint n'indique pas de permission spécifique dans la spécification, attribuez donc à votre clé le minimum requis et vérifiez la réponse plutôt que de faire des suppositions.

Cet endpoint ne prend aucun identifiant d'organisation. Votre clé identifie déjà l'organisation à laquelle elle appartient, et la réponse y est limitée.

Essayer

Remplacez tout ce qui se trouve entre crochets par vos propres valeurs, et le espace réservé à la clé par une clé de votre tableau de bord.

curl -X GET https://api.zinndigital.com/v1/branding/by-panel-hostname?hostname=<hostname> \
  -H "Authorization: Bearer zdk_live_…"

Connecté ? La console d'API de votre tableau de bord saisit votre véritable ID d'organisation ainsi que votre propre clé, et exécute la requête sur l'API de production afin que vous puissiez voir la réponse réelle. Ouvrir ce point de terminaison dans la console API

Détails

The brand behind a reseller's own panel address. ⛔ **Unauthenticated, deliberately, and this is the only endpoint on the API where that is the right answer.** Its caller is the edge Worker rendering a *maintenance page* — which by definition runs when the panel behind it is unreachable, quite possibly because the engine is having a bad time. A credential to fetch would be one more thing to go wrong on the error path, and the Worker has nobody to authenticate as. ⭐ It discloses nothing new: it answers **only for a hostname that is already actively serving that brand's panel**, so everything in the payload is on the screen of anyone who types that address. An unknown or inactive hostname is a `404` with no detail, so it is not an oracle for "which of these domains is a Zinn® customer".

Paramètres

NomTypeObligatoireQu'est-ce que c'est
hostname (query)stringOui

Réponse

NomTypeObligatoireQu'est-ce que c'est
namestringOui
logo_urlstringOui
primary_colourstringOui
support_urlstringOui
localesstring[]OuiThe languages this panel offers, so the **sign-in page** can be in one of them. A reseller selling into one market should not have their customers meet an English login form and…
default_localestringOuiThe language the sign-in page opens in.
locales_restrictedbooleanOuiTrue when the reseller narrowed the list.
language_switcherbooleanOuiWhether the sign-in page should render a language picker at all.
currency_switcherbooleanOuiWhether a currency picker should render. No `currencies` list rides on this response: a maintenance or sign-in page prices nothing, so the list would be dead weight on a respons…
paletteobjectNonThe brand's colour tokens, so the **logged-out** sign-in card can paint itself. ⚖️ The owner asked directly on 2026-09-03 whether a visitor sent to a login from a members-only p…
font_stackstringNonA complete CSS `font-family` value, fallbacks included.
font_css_urlstringNonThe self-hosted webfont stylesheet, from our own origin. Empty for a catalogue font.
nav_positionstringNon
densitystringNon
corner_radiusstringNon
colour_schemestringNon
favicon_urlstringNonThe brand's icon, already falling back to its logo.
oidc_client_idstringOuiThe Keycloak client this panel signs in through. ⛔ The panel cannot sign anybody in without it. One build of the dashboard is served on `app.zinndigital.com` and on every resell…
oidc_authoritystringOuiWhere this panel's browser fetches OIDC metadata from — the reseller's **own** hostname, not ours. ⛔ **This is what keeps our name out of the address bar during sign-in** (#2990…

Erreurs que cet point de terminaison peut renvoyer

404 · 429