Developers

Schema first, client next.

8 endpoints and 6 models as one OpenAPI 3.1.0 document. Generate a client, mock the scoring path, or import it into your gateway.

Spec
OpenAPI 3.1.0
Version
v1
Endpoints
8
Models
6
Event payloads
4
Server
https://api.atmlist.com
Preview

What the document declares

The document is the same surface the reference describes: bearer key auth, the scoring call with its idempotency header, cursor-paginated fleet and case reads, the evidence pack, and the four webhook events with their payload schemas. Request and response examples are attached to the scoring and subscription operations, so a generated mock server returns realistic bodies.

openapi.jsonjson
{
  "openapi": "3.1.0",
  "info": {
    "title": "ATMList Detection API",
    "version": "v1"
  },
  "servers": [
    {
      "url": "https://api.atmlist.com"
    }
  ],
  "security": [
    {
      "bearerAuth": []
    }
  ]
}

Timestamps are ISO-8601 UTC with second precision, field names are snake_case, and error responses share one schema so generated clients can map them in a single place.

Endpoints
  • POST/v1/score/withdrawal
  • GET/v1/terminals
  • GET/v1/terminals/{terminal_id}/risk
  • GET/v1/cases
  • GET/v1/cases/{case_id}
  • GET/v1/cases/{case_id}/evidence
  • GET/v1/signatures
  • POST/v1/subscriptions
Models
  • Decision
  • ReasonCode
  • TerminalRisk
  • EvidencePack
  • Signature
  • WebhookEvent
  • TerminalCompromisedPayload
  • WithdrawalBlockedPayload
  • CaseOpenedPayload
  • CaseResolvedPayload