Skip to main content
POST
Error

Autorizações

Authorization
string
header
obrigatório

A staff session token, uk_st_…. Minted by sign-up, sign-in or the two-factor exchange. Only a 401 means it is spent; not_a_member (403) is about the organization named in X-Organization-Id and leaves the token good for the others.

Cabeçalhos

X-Organization-Id
string

The organization the caller is acting on — the org_… code that appears in the panel URL. It identifies; the membership JOIN is what authorizes, so a forged code reads nothing: the answer is not_a_member (403), which does not mean the session is over. Absent, the session's default organization answers, or — if that membership was revoked while the session was open — any other one the caller still holds.

Parâmetros de caminho

id
string<uuid>
obrigatório

The environment's id.

Corpo

application/json
base_url
string
obrigatório

Where the server answers, with no trailing slash.

Exemplo:

"https://evo.exemplo.dev"

instance
string
obrigatório

Which instance on that server sends. It is a path segment in every call we make.

Maximum string length: 200
Exemplo:

"vendas"

api_key
string
obrigatório

The server's own api key. Encrypted at rest and never returned.

Maximum string length: 500

Resposta

Stored, with whatever the first health check learned.

The Evolution server an environment sends WhatsApp through. The api key is never part of this document.

connection
object
whatsapp_available
boolean

Whether this deployment can store a credential at all.