Authentication status and access guidance for the ZakCodeX Public API.
API authentication
Every endpoint in the ZakCodeX OpenAPI specification requires a server-issued bearer token in the Authorization header. Tokens must remain in trusted server environments and must not be embedded in frontend JavaScript.
Private operational access
Revalidation and IndexNow routes are operational endpoints and are not part of the public API. Their credentials are issued only to authorised ZakCodeX deployment systems.
Request and rotate credentials
Contact ZakCodeX developer support to request, rotate, or revoke an integration token. Self-service credential issuance is not currently available.
See the ZakCodeX Developer Portal, ZakCodeX OpenAPI specification, or email contact@zakcodex.com.
