Beaconstac website screenshot

Beaconstac

Beaconstac (now Uniqode) is a B2B SaaS platform for creating, customizing, and tracking dynamic QR Codes and Digital Business Cards at scale, connecting physical touchpoints to measurable digital experiences for 50,000+ brands. Its REST API (v2.0) covers QR Codes and templates, bulk CSV generation, Digital Business Cards, leads, wallet passes, feedback forms, tags, places, media, organizations, users and webhooks, plus a separate RPC reporting endpoint for scan analytics; the contract is published as a 96-request Postman collection rather than an OpenAPI. REST auth is a dashboard-issued token in the Authorization header plus an Organization ID, gated to the Pro plan and above at 10-100 requests/second by tier. Uniqode also runs a hosted, OAuth-protected MCP server at mcp.uniqode.com for QR management and analytics from Claude. SOC 2 Type II, ISO 27001:2022, HIPAA and GDPR compliant. Formerly MobStac / Beaconstac; backed by Accel.

Beaconstac publishes 1 API on the APIs.io network: Uniqode QR Code API. Tagged areas include Company, Big Data, QR Codes, Digital Business Cards, and Marketing.

The Beaconstac catalog on APIs.io includes 1 event-driven AsyncAPI specification.

Beaconstac’s developer surface includes documentation, API reference, getting-started guide, engineering blog, support, pricing, signup flow, and 31 more developer resources.

59.9/100 strong ▲ 13.7 Agent 56/100 agent ready Full breakdown ↓
scored 2026-08-17 · rubric v0.11.0
AccessPaidSelf serveFree trial
1 APIs 1 MCP Servers
CompanyBig DataQR CodesDigital Business CardsMarketingAnalyticsSaaSProximityWebhooksMCP

Kin Score

Kin Score Kin Score How this is scored →
scored 2026-08-17 · rubric v0.11.0
Composite quality — 59.9/100 · strong
Contract Quality 11.0 / 21
Developer Ergonomics 12.2 / 17
Commercial Clarity 10.3 / 17
Operational Transparency 8.4 / 11
Governance 1.3 / 10
Discoverability 7.4 / 9
Regulatory Posture 9.4 / 15
Agent readiness — 56/100 · agent ready
Machine-Readable Contract 18 / 18
Agentic Access Contract 0 / 10
MCP Server 12 / 12
Machine-Readable Auth 10 / 10
Idempotency 0 / 9
Stable Error Semantics 8 / 8
Request/Response Examples 0 / 7
Rate-Limit Signaling 7 / 7
Typed Event Surface 6 / 6
Agent Skills 5 / 5
Well-Known Catalog 4 / 4
Consent & Bot Identity 0 / 3
A2A Agent Card 0 / 8
Dry-Run / Simulate Mode 0 / 4
Regulatory Posture applies to this provider. Its tags matched the Payments regime, so Regulatory Posture carries 15 points of the composite. If this regime is wrong for your business, say so on your provider repo — the applicability map is public and we will correct it.
The six quality facets above are damped to 85 points between them, because the conditional facet above carries the other 15. That is why each facet's contribution is shown against a damped maximum: raising a quality facet moves the composite by 85% of its nominal weight, not 100%. The full arithmetic is at apis.io/rating/.
Improve this rating by publishing the missing artifacts — every area above can be raised, and the full rubric is at apis.io/rating/. This rating is computed from github.com/api-evangelist/beaconstac: open an issue to ask a question, or submit a pull request to add artifacts. Want it done for you? Prioritized profiling — $2,500 →

APIs 1

Individual APIs this provider publishes, each with its own machine-readable definition.

Uniqode QR Code API

REST API (v2.0) to programmatically create static and dynamic QR Codes across 20+ campaign types, apply design templates, generate codes in bulk from CSV/XLSX, manage Digital Bu...

MCP Servers 1

Model Context Protocol servers that expose these APIs to AI agents.

beaconstac-mcp.yml

MCP SERVER

Pricing Plans 1

Published pricing tiers and plan structures.

Rate Limits 1

Documented rate limits and quota policies.

Beaconstac Rate Limits

3 limits

RATE LIMITS

Event Specifications 1

AsyncAPI definitions for this provider's event-driven and streaming APIs.

Security Posture 3

Authentication, domain security, vulnerability disclosure, and trust-center signals.

Beaconstac Authentication

apiKey/oauth2/openIdConnect · 4 schemes

SECURITY

Beaconstac Domain Security

TLSv1.3 · HSTS · DNSSEC · DMARC

SECURITY

Beaconstac Trust Center

SOC 2 Type I, SOC 2 Type II, ISO 27001:2022, HIPAA, GDPR, UK GDPR

SECURITY

Scopes 1

OAuth scopes governing access to this provider's APIs.

Beaconstac Scopes

6 scopes

6 scopes

SCOPES

Resources

Get Started 4

Portal, sign-up, and the first successful call

Documentation 2

Reference material describing how the API behaves

Agent Surfaces 4

MCP servers, agent skills, and machine-readable catalogs

Design & Contract 7

Pagination, idempotency, versioning, errors, and events

Scroll for all 7

Build 4

SDKs, sample code, and the tooling you integrate with

Access & Security 5

Authentication, authorization, and security posture

Operate 5

Status, limits, changes, and where to get help

Commercial 4

Pricing, plans, and the legal terms of use

Company 2

The organization behind the API

Other 1

Properties that don't map to a standard resource type

Source (apis.yml)

apis.yml Raw ↑
aid: beaconstac
name: Beaconstac
description: Beaconstac (now Uniqode) is a B2B SaaS platform for creating, customizing, and tracking dynamic QR Codes and
  Digital Business Cards at scale, connecting physical touchpoints to measurable digital experiences for 50,000+ brands. Its
  REST API (v2.0) covers QR Codes and templates, bulk CSV generation, Digital Business Cards, leads, wallet passes, feedback
  forms, tags, places, media, organizations, users and webhooks, plus a separate RPC reporting endpoint for scan analytics;
  the contract is published as a 96-request Postman collection rather than an OpenAPI. REST auth is a dashboard-issued token
  in the Authorization header plus an Organization ID, gated to the Pro plan and above at 10-100 requests/second by tier.
  Uniqode also runs a hosted, OAuth-protected MCP server at mcp.uniqode.com for QR management and analytics from Claude. SOC
  2 Type II, ISO 27001:2022, HIPAA and GDPR compliant. Formerly MobStac / Beaconstac; backed by Accel.
url: https://raw.githubusercontent.com/api-evangelist/beaconstac/refs/heads/main/apis.yml
x-type: company
x-source: vc-portfolio
x-backed-by:
- accel
x-tier: stub
x-tier-reason: portfolio-lead
accessModel:
  pricing: paid
  onboarding: self-serve
  trial: true
  try_now: false
  public: false
  label: Self-serve signup, 14-day trial, API from the Pro plan up
  confidence: high
  source:
  - authentication
  - plans
  - rate-limits
  generated: '2026-08-13'
  method: searched
specificationVersion: '0.20'
created: '2026-07-17'
modified: '2026-08-13'
image: https://cdn.prod.website-files.com/6669ecc72092c5122374cf32/6731094d55afbe708065f595_uniqode-opengraph.png
tags:
- Company
- Big Data
- QR Codes
- Digital Business Cards
- Marketing
- Analytics
- SaaS
- Proximity
- Webhooks
- MCP
apis:
- name: Uniqode QR Code API
  description: REST API (v2.0) to programmatically create static and dynamic QR Codes across 20+ campaign types, apply design
    templates, generate codes in bulk from CSV/XLSX, manage Digital Business Cards, leads and wallet passes, build feedback
    forms, organize with tags and places, upload media, administer organizations and users, and register webhooks. A separate
    RPC reporting endpoint (/reporting/2.0/) returns scan performance, OS, city, location, visitor and time-of-day distributions.
    Token authentication via the Authorization header plus an organization id. No OpenAPI is published; the machine-readable
    contract is a Postman Collection v2.1 with 96 requests.
  humanURL: https://apidocs.uniqode.com/
  baseURL: https://api.uniqode.com/api/2.0/
  tags:
  - QR Codes
  - Analytics
  - Webhooks
  - Digital Business Cards
  properties:
  - type: Documentation
    url: https://apidocs.uniqode.com/
  - type: APIReference
    url: https://apidocs.uniqode.com/
  - type: GettingStarted
    url: https://docs.uniqode.com/en/articles/6064771-getting-started-with-static-and-dynamic-qr-code-api
  - type: Postman
    url: https://apidocs.uniqode.com/
  - type: PostmanCollection
    url: collections/beaconstac-uniqode-api.postman_collection.json
  - type: Authentication
    url: authentication/beaconstac-authentication.yml
  - type: RateLimits
    url: rate-limits/beaconstac-rate-limits.yml
  - type: ErrorCatalog
    url: errors/beaconstac-problem-types.yml
  - type: DataModel
    url: data-model/beaconstac-data-model.yml
  - type: Conventions
    url: conventions/beaconstac-conventions.yml
  - type: Webhooks
    url: asyncapi/beaconstac-webhooks.yml
maintainers:
- FN: Kin Lane
  email: kin@apievangelist.com
- FN: APIs.json
  email: info@apis.io
common:
- type: Website
  url: https://www.uniqode.com
- type: DeveloperPortal
  url: https://apidocs.uniqode.com/
- type: Documentation
  url: https://apidocs.uniqode.com/
- type: APIReference
  url: https://apidocs.uniqode.com/
- type: GettingStarted
  url: https://docs.uniqode.com/en/articles/6064771-getting-started-with-static-and-dynamic-qr-code-api
- type: Postman
  url: https://apidocs.uniqode.com/
- type: PostmanCollection
  url: collections/beaconstac-uniqode-api.postman_collection.json
- type: Blog
  url: https://www.uniqode.com/blog
- type: Support
  url: https://docs.uniqode.com/
- type: HelpCenter
  url: https://docs.uniqode.com/
- type: Pricing
  url: https://www.uniqode.com/pricing
- type: Plans
  url: plans/beaconstac-plans-pricing.yml
- type: SignUp
  url: https://dashboard.uniqode.com/signup
- type: Login
  url: https://dashboard.uniqode.com/
- type: TermsOfService
  url: https://www.uniqode.com/terms-of-service
- type: PrivacyPolicy
  url: https://www.uniqode.com/privacy
- type: GitHubOrganization
  url: https://github.com/mobstac
- type: StatusPage
  url: https://status.uniqode.com/
- type: ChangeLog
  url: changelog/beaconstac-changelog.yml
- type: Compliance
  url: https://www.uniqode.com/security
- type: TrustCenter
  url: security/beaconstac-trust-center.yml
- type: Conformance
  url: conformance/beaconstac-conformance.yml
- type: DomainSecurity
  url: security/beaconstac-domain-security.yml
- type: Authentication
  url: authentication/beaconstac-authentication.yml
- type: OAuthScopes
  url: scopes/beaconstac-scopes.yml
- type: OpenIDConnect
  url: https://auth.uniqode.com/.well-known/openid-configuration
- type: MCPServer
  url: mcp/beaconstac-mcp.yml
- type: AgentSkill
  url: skills/_index.yml
- type: Lifecycle
  url: lifecycle/beaconstac-lifecycle.yml
- type: Conventions
  url: conventions/beaconstac-conventions.yml
- type: DataModel
  url: data-model/beaconstac-data-model.yml
- type: ErrorCatalog
  url: errors/beaconstac-problem-types.yml
- type: RateLimits
  url: rate-limits/beaconstac-rate-limits.yml
- type: Webhooks
  url: asyncapi/beaconstac-webhooks.yml
- type: Packages
  url: packages/beaconstac-packages.yml
- type: Components
  url: components/beaconstac-components.yml
- type: WellKnown
  url: well-known/beaconstac-well-known.yml
- type: LLMsTxt
  url: llms/beaconstac-llms.txt
x-enrichment:
  date: '2026-08-13'
  status: enriched
  artifacts_added: 16
  pass: local-v1
  note: 'Round 2. Contract discovery beat the round-1 "no spec" finding: apidocs.uniqode.com is a Postman documenter and the
    real 96-request collection was fetchable and is now captured. A hosted, OAuth-protected MCP server was probed live at
    https://mcp.uniqode.com/mcp, with RFC 9728 / RFC 8414 / OIDC discovery documents on mcp.uniqode.com and auth.uniqode.com.
    Deliberately NOT emitted: SDKs (no API client library exists in any registry — the official npm packages are UI/rendering
    libraries), Idempotency (no idempotency contract), Security (no vulnerability disclosure program), Deprecation (a deprecated
    resource but no policy), AgentCard (no card on any host).'