How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

APIs.io Engineering Platform Turnstile API

The Turnstile API from APIs.io Engineering Platform — 3 operation(s) for turnstile.

APIs.io Engineering Platform Turnstile API is one of 471 APIs that APIs.io Engineering Platform publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

Tagged areas include Turnstile. The published artifact set on APIs.io includes an OpenAPI specification and API documentation.

This API exposes 6 operations across 3 paths, and defines 19 schemas. It is described by OpenAPI 3.2.0, at version 4.0.0.

Requests are made against the base URL https://{bucketname}.s3.amazonaws.com.

6 operations 3 paths 19 schemas 1 DELETE2 GET2 POST1 PUT

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.2.0
API Version
4.0.0
Base URL
https://{bucketname}.s3.amazonaws.com
Authentication
API Key, API Key, HTTP Bearer, API Key
Resource Areas
1

Authentication & Security 4

APIs.io Engineering Platform Turnstile API declares 4 security schemes for authenticating requests. An API key is passed in the header as X-Auth-Email (api_email). An API key is passed in the header as X-Auth-Key (api_key). It accepts HTTP bearer tokens (api_token). An API key is passed in the header as X-Auth-User-Service-Key (user_service_key).

Paths & Operations 6

Across 3 paths, the API surfaces 6 operations — 1 DELETE, 2 GET, 2 POST, 1 PUT. Each is listed below with its method, path, parameters, and response codes.

Turnstile 6
GET
/accounts/{account_id}/challenges/widgets
APIs.io Engineering Platform List Turnstile Widgets
accounts-turnstile-widgets-list 5 params → 4XX200
POST
/accounts/{account_id}/challenges/widgets
APIs.io Engineering Platform Create a Turnstile Widget
accounts-turnstile-widget-create 5 params body → 4XX200
DELETE
/accounts/{account_id}/challenges/widgets/{sitekey}
APIs.io Engineering Platform Delete a Turnstile Widget
accounts-turnstile-widget-delete 2 params → 4XX200
GET
/accounts/{account_id}/challenges/widgets/{sitekey}
APIs.io Engineering Platform Turnstile Widget Details
accounts-turnstile-widget-get 2 params → 4XX200
PUT
/accounts/{account_id}/challenges/widgets/{sitekey}
APIs.io Engineering Platform Update a Turnstile Widget
accounts-turnstile-widget-update 2 params body → 4XX200
POST
/accounts/{account_id}/challenges/widgets/{sitekey}/rotate_secret
APIs.io Engineering Platform Rotate Secret for a Turnstile Widget
accounts-turnstile-widget-rotate-secret 2 params body → 4XX200

Schemas 19

The contract defines 19 schemas that model the data the API accepts and returns. The most detailed are turnstile_widget_detail (11 properties), turnstile_widget_list (10 properties), turnstile_api-response-common-failure (4 properties), turnstile_result_info (4 properties). Each schema is shown below with its type and property counts.

turnstile_secret
string
Secret key for this widget.
turnstile_mode
string
Widget Mode
turnstile_clearance_level
string
If Turnstile is embedded on a Cloudflare site and the widget should grant challenge clearance, this setting can determine the clearance level to be set
turnstile_messages
array
turnstile_created_on
string
When the widget was created.
turnstile_widget_detail
object
A Turnstile widget's detailed configuration
11 properties 11 required
turnstile_api-response-common
object
3 properties 3 required
turnstile_sitekey
string
Widget item identifier tag.
turnstile_identifier
string
Identifier
turnstile_result_info
object
4 properties 4 required
turnstile_bot_fight_mode
boolean
If botfightmode is set to true, Cloudflare issues computationally expensive challenges in response to malicious bots (ENT only).
turnstile_offlabel
boolean
Do not show any Cloudflare branding on the widget (ENT only).
turnstile_api-response-common-failure
object
4 properties 4 required
turnstile_modified_on
string
When the widget was modified.
turnstile_name
string
Human readable widget name. Not unique. Cloudflare suggests that you set this to a meaningful string to make it easier to identify your widget, and where it is…
turnstile_invalidate_immediately
boolean
If invalidateimmediately is set to false, the previous secret will remain valid for two hours. Otherwise, the secret is immediately invalidated, and requests u…
turnstile_region
string
Region where this widget can be used.
turnstile_domains
array
turnstile_widget_list
object
A Turnstile Widgets configuration as it appears in listings
10 properties 10 required

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

engineering-platform-turnstile-api-openapi.yml Raw ↑

Other APIs APIs.io Engineering Platform publishes across the network.

EasyCron
APIs.io Engineering Platform 2014 11 13 API
APIs.io Engineering Platform 2015 03 31 API
APIs.io Engineering Platform 2016 08 19 API
APIs.io Engineering Platform 2017 03 31 API
APIs.io Engineering Platform 2017 10 31 API
APIs.io Engineering Platform 2018 10 31 API
APIs.io Engineering Platform 2019 09 25 API
APIs.io Engineering Platform 2019 09 30 API
APIs.io Engineering Platform 2020 04 22 API
APIs.io Engineering Platform 2020 06 30 API
Where this information came from

This is an independent, third-party profile of APIs.io Engineering Platform Turnstile API, published by API Evangelist. We do not operate, host, resell, or support these APIs, and we are not affiliated with or endorsed by the company unless stated above. Everything here is built from publicly available information — the company's own site, developer portal, documentation, public repositories, and the specifications it publishes for public use. Nothing is obtained by breaching a system, defeating an access control, or using credentials.

The Kin Score and Agent Readiness rating are independently calculated assessments of a company's public API artifacts, scored against a published rubric. They are not certifications, endorsements, security assessments, or audits.

Corrections, re-scores, and removal are free — no partnership or purchase required, and you do not need to justify the request. A removed company is recorded as unrated, never scored zero for having asked. Acknowledgement within one business day; removal within two.

info@apievangelist.com · Read the full data-sourcing policy →
On a security or compliance team? Put security in the subject line and you will get a person, not a form — we will tell you exactly which public URLs this profile was built from.