partner

POST /v1/partner/customers/{externalId}/panel-sessions

One-click sign-in to your customer's own control panel.

Све partner крајње тачке

Сва документација за програмере →

Аутентификација

Пошаљите API кључ као bearer токен. Кључ мора имати дозволу partner.domains; кључ без ње се одбија уз 403, а не 404.

Ова крајња тачка не прихвата id организације. Ваш кључ већ идентификује организацију којој припада, а одговор је ограничен на њу.

Испробајте

Замените све што је у угластим заградама сопственим вредностима, а чувар места кључа кључем са своје контролне табле.

curl -X POST https://api.zinndigital.com/v1/partner/customers/{externalId}/panel-sessions \
  -H "Authorization: Bearer zdk_live_…" \
  -H "Content-Type: application/json" \
  -d '{  }'

Пријављени сте? API конзола на вашој контролној табли попуњава ваш прави id организације и ваш сопствени кључ, и покреће захтев према живом API-ју како бисте могли да видите стварни одговор. Отворите ову крајњу тачку у API конзоли

Детаљи

Returns a URL that signs the customer straight into their own control panel — send their browser there at once. The single-use ticket rides in the URL fragment (never in a server log) and must be redeemed within 300 seconds; the session lasts one hour, is confined to the customer's organization, and can be ended at any time. With site_id the session opens on that site. The dashboard presents it as the customer's own sign-in ("Signed in from" the partner's name), never as a staff session. Audited as partner.panel_session.issued (the URL is never audited). Only for a customer whose organization YOU created (created_org): one who linked an account they already had is 422 not_delegable. 409 no_account_holder until the customer has accepted their invitation (see panel-access, panel-invite). An unknown customer, or a site_id outside their organization, is 404. 503 when sign-in grants are not configured. Requires partner.domains.

Параметри

НазивТипОбавезноШта је ово
externalId (path)stringДаYOUR id for that customer — whatever your own system calls them. It is what makes linking idempotent, and it is scoped to your partner programme: another partner's id is a 404…

Тело захтева

НазивТипОбавезноШта је ово
site_idobjectНеOpen the session on this site (it must be in the customer's organization).

Одговор

НазивТипОбавезноШта је ово
urlstringДаOpen this in the customer's browser. The single-use ticket is in the fragment; redeem once, within 300 seconds.
expires_atstringДаWhen the SESSION ends (one hour), not the ticket.
client_org_idUuidДаUUIDv7 identifier — sortable by creation time (docs/02 §8).

Грешке које ова крајња тачка може вратити

401 · 403 · 404 · 409 · 422 · 429 · 503