Linework Developers
EN
Get access

Concepts

Scopes

Scopes decide what a key can do. Pick them when you create the key; give each key only what it needs.

A request to an endpoint whose scope is missing from the key fails with 403 INSUFFICIENT_SCOPE. Scopes cannot be added to an existing key: create a new key and revoke the old one.

Not available: payments, wallet, tokens, transfers and account settings. No scope gives access to them.

All scopes#

ScopeAllows
profile:readRead your profile and public profiles of other users.
posts:readRead posts (yours and those you can see in the app) and their comments.
posts:writeUpload media, publish, edit and delete your posts.
comments:writeWrite comments and delete your comments (or comments on your posts).
likes:writeLike and unlike posts.
follows:writeFollow and unfollow users.
stories:writePublish stories.
store:readRead your Bloop store and its products.
store:writeEdit your store, create, update and delete products, update stock.
orders:readRead the orders received by your store.
orders:writeMark orders as shipped.
chat:readRead your conversations and their messages.
chat:writeSend messages (with the anti-spam rule).

Endpoints by scope#

All paths are relative to https://api.linework.app/open/v1.

EndpointScope
GET /meprofile:read
GET /users/{id}profile:read
GET /users/by-username/{username}profile:read
GET /me/postsposts:read
GET /users/{id}/postsposts:read
GET /posts/{id}posts:read
GET /posts/{id}/commentsposts:read
POST /mediaposts:write, stories:write or store:write
POST /postsposts:write
PATCH /posts/{id}posts:write
DELETE /posts/{id}posts:write
POST /posts/{id}/commentscomments:write
DELETE /comments/{id}comments:write
POST DELETE /posts/{id}/likelikes:write
POST DELETE /users/{id}/followfollows:write
POST /storiesstories:write
GET /storestore:read
POST PATCH /storestore:write
GET /store/productsstore:read
POST /store/productsstore:write
PATCH DELETE /store/products/{id}store:write
PATCH /store/products/{id}/stockstore:write
GET /store/ordersorders:read
GET /store/orders/{id}orders:read
POST /store/orders/{id}/shiporders:write
GET /conversationschat:read
GET /conversations/{id}/messageschat:read
POST /conversations/{id}/messageschat:write
POST /messageschat:write

The API Reference is the source of truth: every operation lists its required scope.

Suggested sets#

IntegrationScopes
Publishing botprofile:read posts:read posts:write stories:write
Community managerposts:read comments:write likes:write
Store syncstore:read store:write orders:read orders:write
Support chat botchat:read chat:write (+ orders:read to look up orders)