HTTP-API
Basis-URL https://addtothese.com/api/v1. Authentifizieren Sie sich mit Authorization: Bearer att_... (API-Token) oder mit der Browser-Sitzung plus X-CSRF-Token. Alle Bodys sind JSON; Fehler haben die Form {"error": "...", "code": "..."}.
| Methode | Pfad | Zweck |
|---|---|---|
| POST | /auth/register | {email, password, name} |
| POST | /auth/login | {email, password}; kann {mfa_required: true} zurückgeben |
| POST | /auth/totp/verify | {code} |
| POST | /auth/logout | |
| POST | /auth/password/forgot | /auth/password/reset | {email} | {token, password} |
| GET | /auth/oauth/{google|github} | startet OAuth |
| GET/PATCH | /me | Konto; PATCH {name} |
| POST | /me/totp/setup | enable | disable | Zwei-Faktor |
| POST | /me/password | {current_password, new_password} |
| GET/POST/DELETE | /tokens[/{id}] | API-Tokens; POST {name} gibt das Secret einmalig zurück |
| GET/POST/DELETE | /endpoints[/{id}] | POST {subdomain, protocol} |
| POST | /endpoints/ephemeral | {protocol} zufälliger Name |
| GET/POST/DELETE | /domains[/{id}] | POST {domain, endpoint_id} |
| POST | /domains/{id}/verify | DNS-Prüfung |
| POST | /agent-token | {endpoints: []} gibt {token, upstream_url, endpoints, expires_at} zurück |
| GET | /usage | aktueller Zeitraum und Verlauf |
| GET | /tunnels | verbundene Agents |
| GET | /billing/prices | Pläne und Stripe-Preise |
| POST | /billing/checkout | /billing/portal | {price} gibt {url} zurück |