partner
POST /v1/partner/customers/{externalId}/panel-sessions
One-click sign-in to your customer's own control panel.
Аутентификација
Пошаљите API кључ као bearer токен. Кључ мора имати дозволу partner.domains; кључ без ње се одбија уз 403, а не 404.
Ова крајња тачка не прихвата id организације. Ваш кључ већ идентификује организацију којој припада, а одговор је ограничен на њу.
Испробајте
Замените све што је у угластим заградама сопственим вредностима, а чувар места кључа кључем са своје контролне табле.
curl -X POST https://api.zinndigital.com/v1/partner/customers/{externalId}/panel-sessions \
-H "Authorization: Bearer zdk_live_…" \
-H "Content-Type: application/json" \
-d '{ }'Пријављени сте? API конзола на вашој контролној табли попуњава ваш прави id организације и ваш сопствени кључ, и покреће захтев према живом API-ју како бисте могли да видите стварни одговор. Отворите ову крајњу тачку у API конзоли
Детаљи
Returns a URL that signs the customer straight into their own control panel — send their browser there at once. The single-use ticket rides in the URL fragment (never in a server log) and must be redeemed within 300 seconds; the session lasts one hour, is confined to the customer's organization, and can be ended at any time. With site_id the session opens on that site. The dashboard presents it as the customer's own sign-in ("Signed in from" the partner's name), never as a staff session. Audited as partner.panel_session.issued (the URL is never audited). Only for a customer whose organization YOU created (created_org): one who linked an account they already had is 422 not_delegable. 409 no_account_holder until the customer has accepted their invitation (see panel-access, panel-invite). An unknown customer, or a site_id outside their organization, is 404. 503 when sign-in grants are not configured. Requires partner.domains.
Параметри
| Назив | Тип | Обавезно | Шта је ово |
|---|---|---|---|
externalId (path) | string | Да | YOUR id for that customer — whatever your own system calls them. It is what makes linking idempotent, and it is scoped to your partner programme: another partner's id is a 404… |
Тело захтева
| Назив | Тип | Обавезно | Шта је ово |
|---|---|---|---|
site_id | object | Не | Open the session on this site (it must be in the customer's organization). |
Одговор
| Назив | Тип | Обавезно | Шта је ово |
|---|---|---|---|
url | string | Да | Open this in the customer's browser. The single-use ticket is in the fragment; redeem once, within 300 seconds. |
expires_at | string | Да | When the SESSION ends (one hour), not the ticket. |
client_org_id | Uuid | Да | UUIDv7 identifier — sortable by creation time (docs/02 §8). |
Грешке које ова крајња тачка може вратити
401 · 403 · 404 · 409 · 422 · 429 · 503