ThingsBoard · API Governance Rules
ThingsBoard API Rules
Spectral linting rules defining API design standards and conventions for ThingsBoard.
6 Rules
error 2
warn 4
Rule Categories
bearer
components
operation
thingsboard
use
Rules
warn
operation-summary-title-case
Operation summaries should use Title Case (ThingsBoard convention).
$.paths[*][get,post,put,delete,patch].summary
error
operation-tag-required
Every operation must declare at least one tag (controller).
$.paths[*][get,post,put,delete,patch]
error
thingsboard-path-prefix
All ThingsBoard REST endpoints must live under /api/.
$.paths
warn
use-uuid-for-ids
Path parameters named *Id should be UUID format.
$.paths[*][*].parameters[?(@.name && @.name.match(/Id$/))].schema
warn
components-schemas-named
Component schemas must use PascalCase.
$.components.schemas
warn
bearer-or-apikey-security
Operations should require bearerAuth or apiKeyAuth (excluding the login endpoint).
$.paths[?(!@property.match('/auth/login'))][*].security
Spectral Ruleset
Work with this as data
Every ruleset here is available over the APIs.io API and to AI agents over MCP.
MCP server
One button, every client — Claude, Cursor, VS Code and the rest.
https://apis.io/mcp
Tools for spectral rules
4 MCP tools reach this
find_rulesBrowse and filter every ruleset in the catalog.apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.resolveTurn a domain, URL or GitHub org into the provider it belongs to.find_cohortsEvery scored population of providers in the catalog.
Call it yourself
curl for this page
This ruleset
curl "https://apis.io/api/v1/rules/thingsboard-rules"
All spectral rules
curl "https://apis.io/api/v1/rules?limit=25"
Discovery needs no key. Ratings and market analysis are Pro.