Centrapay · OpenAPI Overlay 1.0.0

API Evangelist enhancements overlay for Centrapay API

18 actions 18 updates security extends ../openapi/_original/centrapay-openapi.yml
Generated by API Evangelist Written by API Evangelist tooling for Centrapay's API. It is a proposal applied on top of the contract, not a document Centrapay publishes.
View Overlay File View on GitHub Overlay Specification

What the actions change

x-agentsecurityx-docs

Targets 18 · first 16 shown; the file carries all of them

$
$.info
$.paths['/api/payment-requests'].post
$.paths['/api/payment-requests/{paymentRequestId}'].get
$.paths['/api/payment-requests/short-code/{shortCode}'].get
$.paths['/api/me/patron-code-payment-request'].get
$.paths['/api/connections/{connectionId}/latest-payment-request'].get
$.paths['/api/payment-requests/external-ref/{externalRef}'].get
$.paths['/api/payment-requests/{paymentRequestId}/summary'].get
$.paths['/api/payment-requests/{paymentRequestId}/pay'].post
$.paths['/api/payment-requests/{paymentRequestId}/refund'].post
$.paths['/api/payment-requests/{paymentRequestId}/void'].post
$.paths['/api/payment-requests/{paymentRequestId}/release'].post
$.paths['/api/payment-requests/{paymentRequestId}/confirm'].post
$.paths['/api/payment-activities'].get
$.paths['/api/payment-requests/{paymentRequestId}/activities'].get

OpenAPI Overlay

Raw ↑
overlay: 1.0.0
info:
  title: API Evangelist enhancements overlay for Centrapay API
  version: 1.0.0
extends: ../openapi/_original/centrapay-openapi.yml
x-generated: '2026-10-09'
x-method: generated
x-source: openapi/centrapay-openapi.yml
x-rationale: The spec declares an ApiKey (X-Api-Key header) securityScheme but no root security requirement, and 16 operations
  carry no agent hints. This overlay adds the root requirement, documentation links for auth/idempotency/rate limits, and
  x-agent hints (read-only vs money-moving) without mutating the original.
actions:
- target: $
  description: 'Apply the declared ApiKey scheme as the root security requirement (docs: https://docs.centrapay.com/api/auth).'
  update:
    security:
    - ApiKey: []
- target: $.info
  description: Link the cross-cutting convention pages from the Centrapay docs index.
  update:
    x-docs:
      auth: https://docs.centrapay.com/api/auth
      api_keys: https://docs.centrapay.com/api/api-keys
      idempotency: https://docs.centrapay.com/api/idempotency
      rate_limits: https://docs.centrapay.com/api/rate-limits
      pagination: https://docs.centrapay.com/api/pagination
      http_status_codes: https://docs.centrapay.com/api/http-status-codes
- target: $.paths['/api/payment-requests'].post
  description: Agent hints for createPaymentRequest.
  update:
    x-agent:
      readOnly: false
      movesMoney: false
- target: $.paths['/api/payment-requests/{paymentRequestId}'].get
  description: Agent hints for getPaymentRequest.
  update:
    x-agent:
      readOnly: true
      movesMoney: false
- target: $.paths['/api/payment-requests/short-code/{shortCode}'].get
  description: Agent hints for getPaymentRequestByShortCode.
  update:
    x-agent:
      readOnly: true
      movesMoney: false
- target: $.paths['/api/me/patron-code-payment-request'].get
  description: Agent hints for getPaymentRequestByPatronCode.
  update:
    x-agent:
      readOnly: true
      movesMoney: false
- target: $.paths['/api/connections/{connectionId}/latest-payment-request'].get
  description: Agent hints for getPaymentRequestByConnectionId.
  update:
    x-agent:
      readOnly: true
      movesMoney: false
- target: $.paths['/api/payment-requests/external-ref/{externalRef}'].get
  description: Agent hints for listPaymentRequestsByExternalRef.
  update:
    x-agent:
      readOnly: true
      movesMoney: false
- target: $.paths['/api/payment-requests/{paymentRequestId}/summary'].get
  description: Agent hints for getPaymentRequestSummary.
  update:
    x-agent:
      readOnly: true
      movesMoney: false
- target: $.paths['/api/payment-requests/{paymentRequestId}/pay'].post
  description: Agent hints for payPaymentRequest.
  update:
    x-agent:
      readOnly: false
      movesMoney: true
      idempotency: Body field idempotencyKey is required (spec).
- target: $.paths['/api/payment-requests/{paymentRequestId}/refund'].post
  description: Agent hints for refundPaymentRequest.
  update:
    x-agent:
      readOnly: false
      movesMoney: true
- target: $.paths['/api/payment-requests/{paymentRequestId}/void'].post
  description: Agent hints for voidPaymentRequest.
  update:
    x-agent:
      readOnly: false
      movesMoney: true
- target: $.paths['/api/payment-requests/{paymentRequestId}/release'].post
  description: Agent hints for releasePaymentRequest.
  update:
    x-agent:
      readOnly: false
      movesMoney: true
- target: $.paths['/api/payment-requests/{paymentRequestId}/confirm'].post
  description: Agent hints for confirmPaymentRequest.
  update:
    x-agent:
      readOnly: false
      movesMoney: true
- target: $.paths['/api/payment-activities'].get
  description: Agent hints for listPaymentActivities.
  update:
    x-agent:
      readOnly: true
      movesMoney: false
- target: $.paths['/api/payment-requests/{paymentRequestId}/activities'].get
  description: Agent hints for listPaymentRequestActivities.
  update:
    x-agent:
      readOnly: true
      movesMoney: false
- target: $.paths['/api/payment-requests/{paymentRequestId}/conditions/{conditionId}/accept'].post
  description: Agent hints for acceptPaymentCondition.
  update:
    x-agent:
      readOnly: false
      movesMoney: false
- target: $.paths['/api/payment-requests/{paymentRequestId}/conditions/{conditionId}/decline'].post
  description: Agent hints for declinePaymentCondition.
  update:
    x-agent:
      readOnly: false
      movesMoney: false