CDR Common API
The cross-sector endpoints every CDR data holder must expose regardless of industry — GET /common/customer and /common/customer/detail for the consented customer's identity, and the unauthenticated /discovery/status and /discovery/outages endpoints that let the ecosystem see whether a data holder is up and when it plans to be down. The discovery pair is a rare example of a regulator mandating a public status API.