developer

Self-serve developer sandboxes (D-42, FR-PLAT-07): registration (open mode) with email verification and abuse limits, the developer workspace, and the operator / platform controls (invite or open per operator, capped per environment).

Markdown version: developer.md

My developer sandbox workspace

GET /v1/developer/workspace

  • getDeveloperWorkspace
  • API key scope balances:read
  • Tenant customer

404 when the customer is not a developer workspace. Records activity (the 90-day idle clock restarts).

API key scope: balances:read.

Parameters

NameInTypeDescription
X-Tenant-IdrequiredheaderUuid

Tenant context: the operator tenant id (staff operations) or customer tenant id (customer operations). Validated against the caller's memberships; mismatch → 403. For API keys it must equal the key's customer id (customer-level keys are bound to one customer) or, for operator-level keys (P9-T08b), the operator id.

X-Request-Idheaderstring

Client-supplied correlation id. Generated by the server when absent; always echoed in the response and in problem details.

Responses

  • 200 OK application/json

    Schema DeveloperWorkspace

    • registrationId Uuidrequired

    • customerId Uuidrequired

    • mode DeveloperRegistrationModerequired

    • status DeveloperRegistrationStatusrequired

    • provisionedAt Timestamp | nullrequired

    • lastActiveAt Timestamp | nullrequired

    • expiresAt string | null (date-time)required

      Idle expiry (the programme's idleExpiryDays after the last activity).

    • connection object | nullrequired

      Fields of connection
      • id Uuidrequired

      • provider stringrequired

      • environment stringrequired

    • activeTestKeys integerrequired

      min 0

  • 401 Missing, expired or invalid credentials (`unauthenticated`, `session-expired` with `reason` `idle` / `revoked` / `expired`, `invalid-api-key`, `mfa-required`). application/problem+json

    Body Problem; see the error catalogue.

  • 403 Authenticated but not allowed: missing capability or scope, tenant not in memberships, `step-up-required`, IP not allow-listed, impersonation restriction. application/problem+json

    Body Problem; see the error catalogue.

  • 429 Rate limit exceeded. application/problem+json

    Body Problem; see the error catalogue.

  • default Unexpected error (`500 internal-error`, `501 not-implemented`, `502 provider-error`, `503 service-unavailable`, `504 provider-timeout`). Money operations that time out at the provider are never retried blindly; their state becomes `exception`/unknown and is reconciled. application/problem+json

    Body Problem; see the error catalogue.

Code samples

Against the sandbox (https://bank.wirebloom.com/v1).

curl -X GET "https://bank.wirebloom.com/v1/developer/workspace" \
  -H "Authorization: Bearer $WIREBLOOM_API_KEY" \
  -H "X-Tenant-Id: $WIREBLOOM_CUSTOMER_ID"