What the API returns
Decision envelope
Each check returns a normalized verdict for URL, text, phone, media, wallet or actor inputs. Responses carry reason codes and billing mode so product teams can explain the result and track usage without scraping dashboard state.
Signed evidence metadata
Where the underlying route supports signed verification, the API links the verdict to evidence metadata and public verification paths. Public copy stays bounded to shipped verifier contracts.
Quota-aware usage
API Packages and API Credits are separate from dashboard product access. They fund API checks and approved overflow paths; they do not unlock SIEM, webhooks, Evidence Packs, team controls or protected LK modules.
Production integration path
Use scoped API keys, production HTTPS endpoints, documented request schemas and SDK examples. Undocumented internal routes are not part of the public API contract.
Core call
curl -X POST https://securilayer.dev/v1/decision/url \
-H "Content-Type: application/json" \
-H "X-API-Key: sl_xxxxx" \
-d '{"url":"https://example.com"}'Partner integration model
Use the Reputation API when another product needs a verdict at the moment of user risk: a wallet checks a signing flow, a launchpad checks a project link, a community bot checks a posted URL, or an internal security tool enriches an incident. The response is intentionally operational: risk classification, confidence, reason codes, billing mode, tenant scope, and evidence metadata where supported. It is not a universal identity database and it does not expose other tenants' private data.
External partners can start with anonymous public reputation where available, then move to scoped API keys for metered production usage. API Packages and API Credits fund API calls only; dashboard products remain governed by their own plan capabilities and add-ons, with usage visible to operators in the customer workspace.
Что возвращает API
Decision envelope
Каждая проверка возвращает нормализованный вердикт для URL, текста, телефона, медиа, кошелька или актора. Ответ содержит reason codes и режим биллинга, чтобы продукт мог объяснить результат и учитывать расход без чтения состояния личного кабинета.
Подписанные метаданные доказательств
Если маршрут поддерживает подписанную верификацию, API связывает вердикт с метаданными доказательств и публичным путём проверки. Публичное описание ограничено реально выпущенными verifier-контрактами.
Использование с учётом квот
API Packages и API Credits отделены от доступа к продуктам кабинета. Они оплачивают API-проверки и разрешённый overflow, но не открывают SIEM, Webhooks, Evidence Packs, Team controls или защищённые модули ЛК.
Production-интеграция
Используйте scoped API keys, production HTTPS endpoints, документированные request-схемы и примеры SDK. Недокументированные внутренние маршруты не входят в публичный API-контракт.
Базовый вызов
curl -X POST https://securilayer.dev/v1/decision/url \
-H "Content-Type: application/json" \
-H "X-API-Key: sl_xxxxx" \
-d '{"url":"https://example.com"}'Модель партнёрской интеграции
Reputation API применяется в момент риска пользователя: кошелёк проверяет signing flow, launchpad проверяет ссылку проекта, community-бот проверяет опубликованный URL, а внутренний security-инструмент обогащает инцидент. Ответ намеренно операционный: классификация риска, уверенность, reason codes, режим биллинга, тенантный контекст и доступные метаданные доказательств. Это не универсальная база личности и не канал доступа к приватным данным других тенантов.
Внешний партнёр может начать с доступной публичной репутации, затем перейти на scoped API keys для production-нагрузки. API Packages и API Credits оплачивают только API-вызовы; продукты кабинета управляются собственными plan capabilities и add-ons, а расход виден операторам рабочей зоны.