Telesair · Authentication Profile

Telesair Authentication

Authentication

Telesair declares 2 security scheme(s) across its OpenAPI definitions.

CompanyMedical DevicesHealthcareRespiratory CareMedTechHardwareOxygen TherapyHospital
Methods: Schemes: 2 OAuth flows: API key in:

Security Schemes

none
http
scheme: bearer · in: tool-parameter (visitorToken)

Source

Authentication Profile

telesair-authentication.yml Raw ↑
generated: '2026-08-30'
method: probed
source: https://www.telesair.com/_api/mcp (live MCP initialize + tools/list)
summary: >-
  Telesair publishes no REST/GraphQL API and therefore declares no securitySchemes anywhere. The
  only authenticated surface it exposes is the Wix Site Visitor Assistant MCP endpoint served from
  its own host, whose auth model was established by live probe rather than from documentation.
schemes:
- id: mcp-anonymous
  surface: https://www.telesair.com/_api/mcp
  type: none
  applies_to: [initialize, tools/list, GetBusinessDetails, SearchInSite, SearchSiteApiDocs, BrowseWixRESTDocsMenu, ReadFullDocsArticle, ReadFullDocsMethodSchema]
  evidence: >-
    POST initialize and POST tools/list both returned HTTP 200 with no Authorization header and no
    OAuth challenge, probed 2026-08-30.
- id: wix-visitor-token
  surface: https://www.telesair.com/_api/mcp
  type: http
  scheme: bearer
  in: tool-parameter
  parameter: visitorToken
  applies_to: [CallWixSiteAPI, ExecuteWixAPI]
  issuance: self-service
  issuance_tool: GenerateVisitorToken
  evidence: >-
    The GenerateVisitorToken tool mints an anonymous visitor session token with no credential; both
    write-capable tools declare visitorToken as a required inputSchema property.
oauth: false
openid_connect: false
mutual_tls: false
api_keys: false
scopes: null
scopes_note: >-
  No OAuth surface exists, so no scopes/ artifact is emitted. /.well-known/oauth-authorization-server
  and /.well-known/oauth-protected-resource both returned HTTP 400 (Wix catch-all).
docs: null
docs_note: >-
  Telesair publishes no authentication documentation of any kind; this profile is derived entirely
  from the live MCP handshake.

Work with this as data

Every security artifact here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for security posture

4 MCP tools reach this
  • find_securityBrowse and filter every security artifact in the catalog.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This security artifact
curl "https://apis.io/api/v1/security/telesair-authentication"
All security posture
curl "https://apis.io/api/v1/security?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no email required.

A second provider on the same verified email joins the account you already have.