Syntage DS MX SAT Credentials API
The DS MX SAT Credentials API from Syntage — 3 operation(s) for ds mx sat credentials.
The DS MX SAT Credentials API from Syntage — 3 operation(s) for ds mx sat credentials.
openapi: 3.0.2
info:
version: '2020-06-28'
title: Syntage Accounts Payable Insight DS MX SAT Credentials API
contact:
name: Email
email: support@syntage.com
description: "# Introduction\n\nThe Syntage API is organized around [REST](https://en.wikipedia.org/wiki/Representational_State_Transfer).\nOur API has predictable resource-oriented URLs, accepts form-encoded request bodies, returns [JSON-LD](https://json-ld.org) responses, and uses standard HTTP response codes, authentication, and verbs.\n\n# Environments\n\n| Name | Description | Base URL |\n|------|-------------|----------|\n| **Sandbox** | The Sandbox environment is dedicated to development and testing. In this environment, no real taxpayer credentials are required and all interaction with the SAT is simulated generating life-like data, allowing you to pull test data from all endpoints. | https://api.sandbox.syntage.com |\n| **Production** | The Production environment is dedicated to live applications with real connections to the SAT. In this environment, real taxpayer credentials are required, and you will pull real fiscal data directly from the SAT. | https://api.syntage.com |\n\nEach environment has a different API Key for [authentication](#section/Authentication).\n\n# Request IDs\n\nEach API request has an associated request identifier.\nYou can find this value in the response headers, under `X-Request-ID`:\n\n```curl\ncurl -i https://api.syntage.com\nHTTP/1.1 200 OK\nDate: Sun, 29 Nov 2020 19:21:21 GMT\nX-Request-ID: Root=1-6532dcae-169bf139354cd48959f55c55\n```\n\nIf you need to contact us about a specific request, providing the request identifier will ensure the fastest possible resolution.\n\n# Rate Limiting\n\nOur API employs a number of safeguards against bursts of incoming traffic to help maximize its stability.\nThe returned HTTP headers of any API request show your current rate limit status:\n\n```curl\ncurl -i https://api.syntage.com\nHTTP/1.1 200 OK\nDate: Sun, 29 Nov 2020 19:21:21 GMT\nX-RateLimit-Limit: 60\nX-RateLimit-Remaining: 56\nX-RateLimit-Reset: 1606678044\n```\n\n| Header Name | Description |\n|-----------------------|------------------------------------------------------------------------------|\n| X-RateLimit-Limit | The maximum number of requests you're permitted to make. |\n| X-RateLimit-Remaining | The number of requests remaining in the current rate limit window. |\n| X-RateLimit-Reset | The time at which the current rate limit window resets in UTC epoch seconds. |\n\nIf you exceed the rate limit, a [429 Too Many Requests](https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/429) response is returned:\n\n```http\nHTTP/1.1 429 Too Many Requests\nDate: Sun, 29 Nov 2020 19:21:21 GMT\nX-RateLimit-Limit: 60\nX-RateLimit-Remaining: 0\nX-RateLimit-Reset: 1606678044\n```\n\nWe may reduce limits to prevent abuse, or increase limits to enable high-traffic operations.\nYou can check your current limits in the [dashboard](https://app.syntage.com/settings/usage).\nTo request an increased rate limit, please [contact support](https://support.syntage.com/).\n# Pagination\nWhen issuing a GET request on a collection containing more than 1 page (e.g. [/events](#operation/ListEvent)), a collection is returned. Links to the first, the last, previous and the next page in the collection are displayed as well as the number of total items in the collection.\nAll endpoints that support this operation have a query parameter defined by:\n - `itemsPerPage` The number of items per page (default: 20, max: 1000)\n - `page` The collection page number\n\n```bash\n \"hydra:totalItems\": 1,\n \"hydra:view\": {\n \"@id\": \"/events?page=1\",\n \"@type\": \"hydra:PartialCollectionView\",\n \"hydra:first\": \"/events?page=1\",\n \"hydra:next\": \"/events?page=2\",\n \"hydra:last\": \"/events?page=3\"\n },\n```\n## Cursor Pagination\nCursor pagination is a technique used for navigating through large datasets efficiently. It allows you to retrieve a specific subset of results from a collection by using a cursor value that represents the position within the collection. The cursor serves as a reference point for fetching the next or previous set of results.\n### Benefits of Cursor Pagination:\n1. **Efficient Navigation:** Cursor pagination eliminates the need to fetch the entire dataset at once, making it more scalable and faster. You can retrieve data in smaller, manageable chunks based on the cursor values.\n2. **Consistent Results:** Each page of results in cursor pagination is stable and doesn't change even if new items are added or removed from the collection. This ensures that you get consistent and reliable results.\n3. **Flexibility:** Cursors can be used to navigate forwards and backwards in the collection without impacting performance.\n\n### How to Use Cursor Pagination:\nTo use cursor pagination with our API, follow these instructions:\n1. Make a request to retrieve the initial page of results. The response will be a JSON-LD document that includes a `hydra:next` attribute with the URI for the next page. The URI already includes the cursor attribute.\n2. To retrieve the next page of results, make a GET request to the URI provided in the `hydra:next` attribute. This URI will automatically include the cursor value for the next page.\n3. If you want to navigate to the previous page, you can use the `hydra:previous` attribute in the JSON-LD response. It will contain the URI for the previous page, including the cursor value.\n4. You can continue making requests to the `hydra:next` and `hydra:previous` URIs to navigate through the paginated results, based on your requirements.\nMake sure to update your request headers to include the necessary headers for JSON-LD content negotiation, such as `Accept: application/ld+json` or `Content-Type: application/ld+json`.\nBy following these instructions, you can effectively navigate through the paginated results using the cursor values provided in the `hydra:next` and `hydra:previous` attributes, without the need to manually include the cursor in your requests. This simplifies the pagination process and enhances the usability of our API.\n\n### Considerations About Cursor Pagination:\n\n - By default, the API uses offset-based pagination (except for a few endpoints that we will list below). If you want to switch to cursor pagination, you need to include an additional header in your request. Set the `X-Pagination-Style` header with the value `\"cursor\"` to enable cursor pagination. If not specified, the API will assume offset-based pagination.\n\n - After enabling cursor pagination, the API response will no longer include the `hydra:totalItems` field by default. Retrieving the total count can be resource intensive and impact response times, especially for large datasets. However, if you need the `hydra:totalItems` information, you can include an additional header in your request. Set the `X-Pagination-Enable-Partial` header with the value `0` to indicate that the response should include extra information, including the `hydra:totalItems` count. Please be aware that enabling this feature may impact API response times, as the backend needs to perform a count operation on the dataset.\n\nIf you require the `hydra:totalItems` count, please consider the potential impact on API response times.\n### Example\n```bash\n curl -i 'https://api.syntage.com/entities/{entityId}/invoices?itemsPerPage=10' \\\n --header 'Accept: application/ld+json' \\\n --header 'X-Api-Key: {apiKey}' \\\n --header 'X-Pagination-Style: cursor' \\\n --header 'X-Pagination-Enable-Partial: 0'\n```\n**Note:** We only support cursor pagination for the following endpoints:\n - `GET /entities/{entityId}/invoices`\n - `GET /entities/{entityId}/invoices/line-items`\n - `GET /entities/{entityId}/invoices/{invoiceId}/line-items`\n - `GET /invoices/{invoiceId}/line-items`\n - `GET /entities/{entityId}/invoices/payments`\n\nFeel free to reach out if you have any further questions or need additional assistance!\n\n# Property Filtering\nThe property filter adds the possibility to select the properties for GET operations.\nSyntax: `?properties[]=<property>&properties[<relation>][]=<property>`\nYou can add as many properties as you need. The following example shows how to select `paymentType` and `issuer.rfc` when fetching a list of invoices.\n```curl\n curl -i https://api.syntage.com/entities/{entityId}/invoices?properties[]=paymentType&properties[issuer]=rfc\n```\n# Filtering\n**Warning:** Collection endpoints only apply the filter query parameters documented for that endpoint. If you send an unsupported or misspelled filter query parameter, the API ignores it and processes the request as if that parameter was not sent.\n\n# API Versioning Guide\nGuidance on changes between versions.\n## Version: 2020-01-01 to 2020-06-28\n### **Invoice**\n_**Affected Endpoints:** `GET /invoices/{id}` and `GET /entities/{entityId}/invoices`_\n- The `amount` property has been removed from API responses. Use the `total` property instead.\n- Retrieval by invoice's `uuid` at `/invoices/{id}` is now removed. To retrieve an invoice, use the invoice's `id` at the specified endpoint. To find an invoice using its `uuid`, filter the invoice collection at `/entities/{entityId}/invoices?uuid[]={uuid}`.\n- Previously, the `@iri` property for an invoice pointed to the resource using `uuid`, like `/invoices/{uuid}`. Now, it points using its `id`, like `/invoices/{id}`.\n\n### **Entity (Formerly Link)**\n_**Affected Endpoint:** `GET /entities`_\n- Filtering entities by `status` is removed. Use `credential.status` instead. For example, utilize `GET /entities?credential.status[]=active` instead of `GET /entities?status[]=active`.\n\n### **Tax Return**\n_**Affected Endpoints:** `GET /tax-returns/{id}` and `GET /entities/{entityId}/tax-returns`_\n- Retrieval by tax return's `operationNumber` at `/tax-returns/{id}` is removed. To retrieve a tax return, use the tax return's `id` at the mentioned endpoint. To find a tax return using its `operationNumber`, filter the collection at `/entities/{entityId}/tax-returns?operationNumber[]={operationNumber}`.\n- Previously, the `@iri` property for a tax return pointed to the resource using `operationNumber`, like `/tax-returns/{operationNumber}`. Now, it directs to its `id`, like `/tax-returns/{id}`.\n\n### **Event**\n_**Affected Endpoints:** `GET /events` and `GET /events/{id}`_\n- For events associated to an `tax-return`, the `@iri` property now directs to `/tax-returns/{id}` instead of the previous `/tax-returns/{operationNumber}`.\n- For events associated to an `invoice`, the `@iri` property now directs to `/invoices/{id}` instead of the previous `/invoices/{uuid}`.\n\n### **Extraction**\n_**Affected Endpoints:** `GET /extractions` and `GET /extractions/{id}`_\n- The `periodFrom` property has been removed. Use `options.period.from` instead.\n- The `periodTo` property has been removed. Use `options.period.to` instead.\n\n### **File**\n_**Affected Endpoint:** `GET /file/{id}`_\n- For files associated to an `tax-return`, the `@iri` property now directs to `/tax-returns/{id}`, instead of the previous `/tax-returns/{operationNumber}`.\n- For files associated to an `invoice`, the `@iri` property now directs to `/invoices/{id}`, instead of the previous `/invoices/{uuid}`.\n\n### Trying Out This Version\nIf you want to test this version, you can do so by making any request with the `Accept-Version` header pointing to the latest version:\n```curl\n curl -i 'https://api.syntage.com/entities/{entityId}/invoices' \\\n --header 'Accept-Version: 2020-06-28' \\\n --header 'X-Api-Key: {apiKey}'\n```\n"
servers:
- url: https://api.syntage.com
description: Production
- url: https://api.sandbox.syntage.com
description: Sandbox
security:
- ApiKey: []
tags:
- name: DS MX SAT Credentials
paths:
/credentials:
post:
tags:
- DS MX SAT Credentials
operationId: CreateCredential
summary: Create a credential
description: 'Create a SAT credential for an RFC.
If the RFC is not already associated with your organization, Syntage creates the related entity association as part of credential creation.
'
requestBody:
$ref: '#/components/requestBodies/CredentialCreate'
responses:
'202':
$ref: '#/components/responses/Credential'
'400':
$ref: '#/components/responses/ConstraintViolation'
'401':
$ref: '#/components/responses/Unauthorized'
get:
tags:
- DS MX SAT Credentials
operationId: ListCredential
summary: List all credentials
description: 'List SAT credentials available to your organization.
'
responses:
'200':
$ref: '#/components/responses/CredentialCollection'
'401':
$ref: '#/components/responses/Unauthorized'
parameters:
- name: type
in: query
description: Filter by type (exact match)
schema:
$ref: '#/components/schemas/CredentialType'
- name: rfc
in: query
description: Filter by RFC (Registro Federal de Contribuyentes, partial match)
schema:
type: string
minLength: 12
maxLength: 13
example: PEIC211118IS0
- name: status
in: query
description: Filter by status (exact match)
schema:
$ref: '#/components/schemas/CredentialStatus'
- name: deactivatedAt[before]
in: query
description: Filter by deactivation date (less than or equal `<=`)
example: '2020-01-17 11:47:27'
schema:
type: string
format: date-time
- name: deactivatedAt[strictly_before]
in: query
description: Filter by deactivation date (less than `<`)
example: '2020-01-17 11:47:27'
schema:
type: string
format: date-time
- name: deactivatedAt[after]
in: query
description: Filter by deactivation date (greater than or equal `>=`)
example: '2020-01-17 11:47:27'
schema:
type: string
format: date-time
- name: deactivatedAt[strictly_after]
in: query
description: Filter by deactivation date (greater than `>`)
example: '2020-01-17 11:47:27'
schema:
type: string
format: date-time
- $ref: '#/components/parameters/createdAtBefore'
- $ref: '#/components/parameters/createdAtStrictlyBefore'
- $ref: '#/components/parameters/createdAtAfter'
- $ref: '#/components/parameters/createdAtStrictlyAfter'
- $ref: '#/components/parameters/orderCreatedAt'
- $ref: '#/components/parameters/collectionPage'
- $ref: '#/components/parameters/collectionLimit'
/credentials/{id}:
get:
tags:
- DS MX SAT Credentials
operationId: GetCredential
summary: Retrieve a credential
description: 'Retrieve a SAT credential by ID, including its credential type, RFC, and validation status.
'
parameters:
- $ref: '#/components/parameters/resourceId'
responses:
'200':
$ref: '#/components/responses/Credential'
'401':
$ref: '#/components/responses/Unauthorized'
'404':
$ref: '#/components/responses/NotFound'
delete:
tags:
- DS MX SAT Credentials
summary: Delete a credential
operationId: DeleteCredential
description: 'Delete a SAT credential so it can no longer be used for new extraction work.
'
parameters:
- $ref: '#/components/parameters/resourceId'
responses:
'204':
description: Credential resource deleted
'400':
$ref: '#/components/responses/BadRequest'
'401':
$ref: '#/components/responses/Unauthorized'
'404':
$ref: '#/components/responses/NotFound'
/credentials/{id}/revalidate:
post:
tags:
- DS MX SAT Credentials
operationId: RevalidateCredential
summary: Revalidate a credential
description: 'Request validation for a SAT credential that is not already valid.
'
parameters:
- $ref: '#/components/parameters/resourceId'
responses:
'202':
$ref: '#/components/responses/Accepted'
'400':
$ref: '#/components/responses/BadRequest'
'429':
$ref: '#/components/responses/TooManyRequests'
'404':
$ref: '#/components/responses/NotFound'
components:
schemas:
CollectionPage:
type: integer
default: 1
TaxpayerID:
type: string
minLength: 12
maxLength: 13
description: RFC (Registro Federal de Contribuyentes)
example: PEIC211118IS0
updatedAt:
type: string
description: Date and time the resource was last updated
example: '2020-01-01T12:15:00.000Z'
CollectionLimit:
type: integer
default: 20
minimum: 1
maximum: 1000
Credential:
type: object
properties:
'@id':
type: string
format: iri-reference
description: SAT Credential IRI reference
example: /credentials/91106968-1abd-4d64-85c1-4e73d96fb997
'@type':
type: string
default: Credential
id:
type: string
format: uuid
description: Credential ID
example: 91106968-1abd-4d64-85c1-4e73d96fb997
type:
$ref: '#/components/schemas/CredentialType'
rfc:
$ref: '#/components/schemas/TaxpayerID'
status:
$ref: '#/components/schemas/CredentialStatus'
createdAt:
$ref: '#/components/schemas/createdAt'
updatedAt:
$ref: '#/components/schemas/updatedAt'
createdAt:
type: string
description: Date and time the resource was created
example: '2020-01-01T12:15:00.000Z'
CredentialEfirmaInput:
type: object
description: e.firma
required:
- type
- certificate
- privateKey
- password
properties:
type:
type: string
description: Credential type
certificate:
type: string
format: base64
writeOnly: true
description: Certificate file (.cer) content encoded in Base64
example: MIIF7zCC...Pl1ai2M=
privateKey:
type: string
format: base64
writeOnly: true
description: Private key file (.key) content encoded in Base64
example: MIIFDjBA...e3Kov54=
password:
type: string
writeOnly: true
description: Private key password
example: secret123
CursorCollection:
type: object
properties:
'@context':
type: string
'@id':
type: string
'@type':
type: string
default: hydra:Collection
hydra:member:
type: array
items:
type: object
hydra:view:
type: object
description: Pagination information
properties:
'@id':
type: string
format: iri-reference
description: Current page IRI reference
'@type':
type: string
default: hydra:PartialCollectionView
hydra:next:
type: string
example: /entity/2a15f539-3251-48e1-aaeb-a154dc9c6edb/resource?id[lt]=9b8e5365-0b36-45f5-9c76-fbe439632367
description: Next page IRI reference; omitted when there is no pagination
hydra:last:
type: string
example: /entity/2a15f539-3251-48e1-aaeb-a154dc9c6edb/resource?id[gt]=9b8e5365-0b36-45f5-9c76-fbe439632367
description: Last page IRI reference; omitted when there is no pagination
hydra:search:
type: object
properties:
'@type':
type: string
hydra:template:
type: string
hydra:variableRepresentation:
type: string
hydra:mapping:
type: array
items:
type: object
properties:
'@type':
type: string
variable:
type: string
property:
type: string
required:
type: boolean
CredentialType:
type: string
enum:
- ciec
- efirma
example: ciec
CollectionOrder:
type: string
enum:
- asc
- desc
example: asc
CredentialStatus:
type: string
enum:
- waiting
- pending
- valid
- invalid
- disabled
- deactivated
- error
x-enumDeprecated:
deactivated: Legacy status retained for existing records. The `disabled` status is used for credentials that can no longer be used.
description: 'Credential validation status:
| Value | Description |
| --- | --- |
| `waiting` | Credential validation is temporarily disabled, usually because of an ongoing incident. The credential will be validated later. |
| `pending` | Credential validation has been requested and is waiting to be processed. |
| `valid` | The credential was accepted by SAT and can be used for extractions. |
| `invalid` | SAT rejected the credential during validation. |
| `disabled` | SAT reported the credential as disabled or otherwise unrecoverable during validation. |
| `deactivated` | **Deprecated.** Legacy status retained for existing records. The `disabled` status is used for credentials that can no longer be used. |
| `error` | Credential validation failed because of an unexpected error. |
'
example: pending
CredentialCiecInput:
type: object
description: CIEC
required:
- type
- rfc
- password
properties:
type:
type: string
description: Credential type
rfc:
type: string
minLength: 12
maxLength: 13
description: RFC (Registro Federal de Contribuyentes)
example: PEIC211118IS0
password:
type: string
minLength: 8
writeOnly: true
description: CIEC's password
example: secret123
CredentialCollection:
allOf:
- $ref: '#/components/schemas/CursorCollection'
- type: object
properties:
'@context':
default: /contexts/Credential
'@id':
default: /credentials
hydra:member:
items:
$ref: '#/components/schemas/Credential'
parameters:
createdAtStrictlyAfter:
name: createdAt[strictly_after]
in: query
description: Filter by resource creation date (greater than `>`)
example: '2020-01-17 11:47:27'
schema:
type: string
format: date-time
createdAtStrictlyBefore:
name: createdAt[strictly_before]
in: query
description: Filter by resource creation date (less than `<`)
example: '2020-01-17 11:47:27'
schema:
type: string
format: date-time
createdAtBefore:
name: createdAt[before]
in: query
description: Filter by resource creation date (less than or equal `<=`)
example: '2020-01-17 11:47:27'
schema:
type: string
format: date-time
collectionPage:
name: page
in: query
required: false
description: Collection page number
schema:
$ref: '#/components/schemas/CollectionPage'
collectionLimit:
name: itemsPerPage
in: query
required: false
description: Number of items per page
schema:
$ref: '#/components/schemas/CollectionLimit'
orderCreatedAt:
name: order[createdAt]
in: query
description: Order by resource creation date
schema:
$ref: '#/components/schemas/CollectionOrder'
resourceId:
name: id
in: path
required: true
example: 91106968-1abd-4d64-85c1-4e73d96fb997
schema:
type: string
format: uuid
createdAtAfter:
name: createdAt[after]
in: query
description: Filter by resource creation date (greater than or equal `>=`)
example: '2020-01-17 11:47:27'
schema:
type: string
format: date-time
responses:
ConstraintViolation:
description: Validation error
content:
application/ld+json:
schema:
type: object
properties:
'@context':
type: string
default: /contexts/ConstraintViolation
'@type':
type: string
default: ConstraintViolation
hydra:title:
type: string
default: An error occurred
hydra:description:
type: string
description: Concatenated violation messages
example: 'exampleField: This value should not be blank.'
violations:
type: array
items:
type: object
properties:
propertyPath:
type: string
description: Property access path
example: exampleField
message:
type: string
description: Validaton error message
example: This value should not be blank.
Credential:
description: Credential resource response
content:
application/ld+json:
schema:
allOf:
- type: object
properties:
'@context':
type: string
default: /contexts/Credential
- $ref: '#/components/schemas/Credential'
BadRequest:
description: Bad Request
content:
application/json:
schema:
type: object
properties:
message:
type: string
TooManyRequests:
description: Too many requests
headers:
X-RateLimit-Limit:
schema:
type: integer
description: Request limit defined for the time window.
X-RateLimit-Remaining:
schema:
type: integer
description: The number of requests left for the time window.
X-RateLimit-Reset:
schema:
type: string
format: date-time
description: The UTC date/time at which the current rate limit window resets.
content:
application/json:
schema:
type: object
properties:
message:
type: string
NotFound:
description: Not found
content:
application/json:
schema:
type: object
properties:
message:
type: string
CredentialCollection:
description: Credential collection response
content:
application/ld+json:
schema:
$ref: '#/components/schemas/CredentialCollection'
Accepted:
description: The request has been accepted and there's no content to return.
Unauthorized:
description: Unauthorized
content:
application/json:
schema:
type: object
properties:
message:
type: string
requestBodies:
CredentialCreate:
required: true
content:
application/json:
schema:
oneOf:
- $ref: '#/components/schemas/CredentialCiecInput'
- $ref: '#/components/schemas/CredentialEfirmaInput'
discriminator:
propertyName: type
mapping:
ciec: '#/components/schemas/CredentialCiecInput'
efirma: '#/components/schemas/CredentialEfirmaInput'
securitySchemes:
ApiKey:
type: apiKey
in: header
name: X-API-Key
description: 'Your API key is available in the [Production](https://app.syntage.com/settings/api-keys) and [Sandbox](https://app.sandbox.syntage.com/settings/api-keys) dashboards.
'
x-readme:
explorer-enabled: true
proxy-enabled: true
samples-enabled: true