KonbiniAPI · API Governance Rules

KonbiniAPI API Rules

Spectral linting rules defining API design standards and conventions for KonbiniAPI.

10 Rules error 7 warn 3
View Rules File View on GitHub

Rule Categories

konbiniapi

Rules

error
konbiniapi-paths-must-be-versioned
All paths must be prefixed with /v1/ for KonbiniAPI versioning.
$.paths
error
konbiniapi-paths-must-include-platform
All paths must include the platform segment (instagram or tiktok).
$.paths
error
konbiniapi-operations-must-be-get
KonbiniAPI is a read-only data layer. Only GET operations are supported.
$.paths.*
warn
konbiniapi-operation-summary-title-case
Operation summaries must use Title Case.
$.paths.*.get.summary
error
konbiniapi-operation-must-have-operationid
Every operation must have an operationId in camelCase.
$.paths.*.get
warn
konbiniapi-response-must-include-credit-headers
Successful responses must declare X-Credits-Remaining and X-Credits-Used headers.
$.paths.*.get.responses["200"]
error
konbiniapi-must-use-bearer-auth
Global security must use a Bearer (HTTP) scheme.
$.components.securitySchemes
error
konbiniapi-server-must-be-https
All servers must use HTTPS.
$.servers[*].url
warn
konbiniapi-schemas-pascal-case
Component schema names must use PascalCase.
$.components.schemas
error
konbiniapi-must-tag-operations
Every operation must be tagged with Instagram or TikTok.
$.paths.*.get.tags

Spectral Ruleset

Raw ↑
extends:
  - spectral:oas
documentationUrl: https://docs.konbiniapi.com
functions: []
rules:
  # KonbiniAPI conventions: derived from konbiniapi-openapi.yml
  konbiniapi-paths-must-be-versioned:
    description: All paths must be prefixed with /v1/ for KonbiniAPI versioning.
    message: 'Path "{{property}}" must start with /v1/.'
    severity: error
    given: $.paths
    then:
      field: '@key'
      function: pattern
      functionOptions:
        match: '^/v1/'

  konbiniapi-paths-must-include-platform:
    description: All paths must include the platform segment (instagram or tiktok).
    message: 'Path "{{property}}" must include /tiktok/ or /instagram/.'
    severity: error
    given: $.paths
    then:
      field: '@key'
      function: pattern
      functionOptions:
        match: '^/v1/(tiktok|instagram)/'

  konbiniapi-operations-must-be-get:
    description: KonbiniAPI is a read-only data layer. Only GET operations are supported.
    message: '{{path}} uses {{property}}; KonbiniAPI only supports GET.'
    severity: error
    given: $.paths.*
    then:
      function: schema
      functionOptions:
        schema:
          type: object
          not:
            anyOf:
              - required: ['post']
              - required: ['put']
              - required: ['patch']
              - required: ['delete']

  konbiniapi-operation-summary-title-case:
    description: Operation summaries must use Title Case.
    message: 'Summary "{{value}}" should be Title Case.'
    severity: warn
    given: $.paths.*.get.summary
    then:
      function: pattern
      functionOptions:
        match: '^([A-Z0-9][A-Za-z0-9]*)( (a|an|and|the|or|but|for|with|to|of|in|on|at|by|from|as|is|vs|API|URL|MCP|HTTP|HTTPS|TikTok|Instagram|ID|IDs|HD|UHD)| [A-Z0-9][A-Za-z0-9]*)*$'

  konbiniapi-operation-must-have-operationid:
    description: Every operation must have an operationId in camelCase.
    message: 'operationId "{{value}}" must be camelCase.'
    severity: error
    given: $.paths.*.get
    then:
      field: operationId
      function: pattern
      functionOptions:
        match: '^[a-z][a-zA-Z0-9]+$'

  konbiniapi-response-must-include-credit-headers:
    description: Successful responses must declare X-Credits-Remaining and X-Credits-Used headers.
    message: '200 response missing credit-tracking headers.'
    severity: warn
    given: $.paths.*.get.responses["200"]
    then:
      field: headers
      function: schema
      functionOptions:
        schema:
          type: object
          required: [X-Credits-Remaining, X-Credits-Used]

  konbiniapi-must-use-bearer-auth:
    description: Global security must use a Bearer (HTTP) scheme.
    message: 'KonbiniAPI requires Bearer token authentication.'
    severity: error
    given: $.components.securitySchemes
    then:
      function: schema
      functionOptions:
        schema:
          type: object
          patternProperties:
            '^.*$':
              type: object
              properties:
                type: { const: http }
                scheme: { const: bearer }

  konbiniapi-server-must-be-https:
    description: All servers must use HTTPS.
    message: 'Server URL "{{value}}" must use HTTPS.'
    severity: error
    given: $.servers[*].url
    then:
      function: pattern
      functionOptions:
        match: '^https://'

  konbiniapi-schemas-pascal-case:
    description: Component schema names must use PascalCase.
    message: 'Schema "{{property}}" must be PascalCase.'
    severity: warn
    given: $.components.schemas
    then:
      field: '@key'
      function: pattern
      functionOptions:
        match: '^[A-Z][A-Za-z0-9]+$'

  konbiniapi-must-tag-operations:
    description: Every operation must be tagged with Instagram or TikTok.
    message: 'Operation must be tagged Instagram or TikTok.'
    severity: error
    given: $.paths.*.get.tags
    then:
      function: schema
      functionOptions:
        schema:
          type: array
          minItems: 1
          contains:
            enum: [Instagram, TikTok]

Work with this as data

Every ruleset here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for spectral rules

4 MCP tools reach this
  • find_rulesBrowse and filter every ruleset in the catalog.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This ruleset
curl "https://apis.io/api/v1/rules/konbiniapi-rules"
All spectral rules
curl "https://apis.io/api/v1/rules?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.