การยืนยันตัวตน

ส่ง API key ในรูปแบบ bearer token คีย์ดังกล่าวต้องมีสิทธิ์ sites.view หากไม่มีสิทธิ์ ระบบจะปฏิเสธด้วยรหัส 403 แทนที่จะเป็น 404

ปลายทางนี้ไม่ต้องใช้รหัสองค์กร คีย์ของคุณระบุองค์กรที่เป็นเจ้าของอยู่แล้ว และการตอบกลับจะถูกจำกัดขอบเขตไว้เฉพาะองค์กรนั้น

ทดลองใช้เลย

แทนที่สิ่งใดๆ ที่อยู่ภายในวงเล็บแหลมด้วยค่าของคุณเอง และตัวยึดตำแหน่งคีย์ด้วยคีย์จากแดชบอร์ดของคุณ

curl -X GET https://api.zinndigital.com/v1/sites/{siteId}/wp-credentials \
  -H "Authorization: Bearer zdk_live_…"

เข้าสู่ระบบแล้วใช่ไหม คอนโซล API ในแดชบอร์ดของคุณจะเติมรหัสองค์กรจริงและคีย์ของคุณเองโดยอัตโนมัติ และทำการส่งคำขอไปยัง API จริง เพื่อให้คุณเห็นผลลัพธ์ที่เป็นข้อมูลจริง เปิดจุดสิ้นสุดนี้ในคอนโซล API

รายละเอียด

Requires sites.view and sites.panel_access — the key that already means "a customer reaching their own site". Every read is audit-logged: a password revealed by session alone is only safe if looking at it is attributable. Re-reads the site's own wp_users row before answering, so the screen a human is looking at is never stale. A site that cannot be reached is not an error: the stored record is returned unchanged and checked_at says when the platform last managed to look.

พารามิเตอร์

ชื่อประเภทจำเป็นต้องมีลักษณะของสิ่งนี้
siteId (path)Uuidใช่Site ID (UUIDv7).

การตอบกลับ

ชื่อประเภทจำเป็นต้องมีลักษณะของสิ่งนี้
site_idUuidใช่UUIDv7 identifier — sortable by creation time (docs/02 §8).
usernamestringใช่This site's own admin username, re-read from the site's wp_users row on every request. A customer who renames the account in phpMyAdmin, wp-admin or wp-cli sees the new name…
emailstringใช่wp_users.user_email on the site itself — where a WordPress password reset would actually go. Empty until the platform has managed to read one.
passwordstringใช่The current password, or empty when it cannot be shown — see can_reveal. It is derived from a platform key and the site's rotation epoch, never stored, so there is no per-site…
can_revealbooleanใช่False when the customer set their own password (nothing of ours to show) or the environment has no signing key. Rotating makes it true again.
is_custombooleanใช่The password in use was set by the customer through this app, so there is nothing of ours to show. Distinct from changed_outside_app.
changed_outside_appbooleanใช่Proven: the password the platform holds no longer opens the site, so it was changed outside of the Zinn Digital® Hosting App — phpMyAdmin, wp-admin or wp-cli. WordPress stores…
checked_atstringใช่When the platform last managed to LOOK at the site's admin row. Null means never.
verified_atstringใช่When the platform last PROVED these credentials are the live ones. Null means never. Deliberately separate from checked_at: "we have not been able to reach this site for a week"…
login_urlstringใช่Where to sign in.

ข้อผิดพลาดที่เอนด์พอยต์นี้สามารถส่งกลับได้

401 · 403 · 404 · 422 · 429