Developer portal
A single, JWT-secured REST API covers the entire asset platform — assets, depreciation, leases, CWIP, insurance, maintenance and the intelligence hubs. It ships with a current OpenAPI 3.0.1 specification you can import into Stoplight Studio or browse live in Swagger UI.
Every non-anonymous endpoint expects a JWT bearer token. Mint one with your credentials, then send it on the Authorization header. Tokens are issued by osolix-api for the osolix-clients audience. A handful of endpoints (such as GET /health) are deliberately anonymous.
All access is tenant-scoped and enforced server-side — a token only ever sees its own tenant's data.
1 · Obtain a token
POST {API_BASE}/api/auth/login2 · Call any endpoint with the bearer token
Authorization: Bearer <your-jwt>GET {API_BASE}/api/assets?page=1&pageSize=50| Environment | Base URL | Notes |
|---|---|---|
| Production | https://api.osolix.com | Live tenant traffic. Swagger UI at /swagger. |
| Local (HTTPS) | https://localhost:7233 | Dev host from launchSettings.json. |
| Local (HTTP) | http://localhost:5233 | Same host, plain HTTP. |
The committed source of truth for the portal. Download it, or fetch it live from the running API at {API_BASE}/swagger/v1/swagger.json.
In Stoplight Studio, create a project and choose Import → OpenAPI → Upload a file, then select openapi-v1.json. Studio renders every path and model with the JWT scheme already wired up, and a Try-It console.
The running API serves interactive Swagger UI at {API_BASE}/swagger. Authorise with a bearer token and call endpoints straight from the browser.
A taste of the surface — the full map lives in the endpoints index.
The Fixed Asset Register and its full lifecycle — additions, transfers, verifications, retirement.
api/assetsapi/additionsapi/transfersapi/retirementsapi/asset-revaluationsDepreciation runs, forecasts, tax depreciation, the ledger, impairment and year-end close.
api/depreciationapi/tax-depreciationapi/financeapi/finance/impairment-testIFRS 16 / ASC 842 lease accounting — ROU assets, liabilities and contracts.
api/leasesapi/contractsCapital work-in-progress, capital projects, Capex budgets, forecasts and DOA matrix.
api/cwipapi/capital-projectsapi/capexapi/capex-budgetsPolicies, renewals, claims, proposals, coverage analysis and the insurance-drift watcher.
api/insurance-policiesapi/insurance-claimsapi/insurance-driftapi/insurance-proposalsWork orders, predictive maintenance, SLAs, repair-vs-replace, parts and incidents.
api/maintenanceapi/maintenance/predictiveapi/WorkOrdersapi/partsCross-domain intelligence — marquee KPIs, audit, capex, insurance and market-value drift.
api/wave5api/audit-wave5api/capex-wave5api/market-value-driftAudit trails, evidence packs, compliance frameworks, scorecards, standards and the governance dashboard.
api/auditapi/complianceapi/standardsapi/governanceInbound/outbound ERP integration, the outbox, connector packs, imports/exports and webhooks.
api/erp-inboundapi/erp-exportsapi/webhooksapi/syncLogin, MFA, SSO / SAML, SCIM provisioning, users, roles and permissions.
api/authapi/auth/mfaapi/auth/ssoapi/usersThe API is protected by named rate-limit policies, applied per endpoint class. A throttled request returns 429 Too Many Requests; back off and retry. Need a higher ceiling for an integration? Ask us when you request access.
erp-inboundHigh-volume ERP push / sync endpoints.
ai-copilotTenant-facing Osolix AI agent calls.
admin-copilotPrivileged Osolix AI admin assistant operations.
public-checkoutAnonymous checkout — anti-abuse throttle.
All transport is TLS 1.2+. Every request is tenant-scoped and audit-logged server-side, and write operations on approval and transfer resources support optimistic concurrency via the If-Match ETag header. See the compliance reference for the full control stack.
Tell us what you want to build and we will set you up with credentials, a sandbox tenant, and the right rate-limit ceiling for your integration.