PG&E Share My Data (Green Button Connect My Data) ESPI API
PG&E's production Green Button Connect My Data implementation, branded Share My Data. A NAESB REQ.21 Energy Services Provider Interface (ESPI) 1.1 REST API returning Green Button Atom/XML, serving customer-authorized electric and gas interval usage, usage summaries, reading types, billing and account information, service tariff and rate-plan detail, and demand response program enrollment. PG&E's own Supported-APIs reference enumerates the resource set: DownloadSampleData, ReadServiceStatus, ApplicationInformation, Authorization (feed, single, and DELETE revocation), LocalTimeParameters, ReadingType, Subscription UsagePoint / MeterReading / IntervalBlock / UsageSummary trees, and the asynchronous Batch family — Batch/Bulk/{BulkID}, Batch/Subscription/{SubscriptionID}, Batch/BulkRetailCustomerInfo/{BulkID}, Batch/RetailCustomer/{RetailCustomerID}, Batch/BulkRetailDRPrgInfo/{BulkID} and Batch/RetailDRPrgInfo/{RetailCustomerID}. Asynchronous results are announced to a third party's registered notification URI. Every production request runs over mutual (two-way) TLS 1.2 with the third party's X.509 client certificate attached, plus a bearer token — client_access_token for third-party-level resources, per-customer access_token for subscription resources, registration_access_token for ApplicationInformation. Verified live anonymously on 2026-07-27: the ESPI resource paths answer HTTP 400 "Invalid Certificate" from a Mulesoft-API-Gateway while invented sibling paths answer HTTP 404 "No listener for endpoint", which distinguishes a real mTLS-protected listener from a catch-all. Access is application-approval gated; not self-serve.
PG&E Share My Data (Green Button Connect My Data) ESPI API is one of 2 APIs that Pacific Gas and Electric publishes on the APIs.io network, described by a machine-readable OpenAPI specification.
Tagged areas include Green Button, ESPI, Energy Data, Smart Metering, and Electricity. The published artifact set on APIs.io includes API documentation, an API reference, an OpenAPI specification, rate-limit docs, sample payloads, and SDKs.
This API exposes 7 operations across 7 paths, organized into 4 resource areas, and defines 7 schemas. It is described by OpenAPI 3.0.0, at version 1.0.0.
Requests are made against a single base URL, https://sandbox.greenbuttonalliance.org:8443/DataCustodian.
Metadata
The identity and technical contract details declared by the specification.
Authentication & Security 1
PG&E Share My Data (Green Button Connect My Data) ESPI API declares
1 security scheme
for authenticating requests.
It supports OAuth 2.0 (oauth2) using the authorizationCode and clientCredentials flows.
By default, every request must be authenticated.
Paths & Operations 7
Across 7 paths, the API surfaces 7 operations — 7 GET. They span 4 resource areas: ApplicationInformation, Authorization, Batch, UsagePoint. Each is listed below with its method, path, parameters, and response codes.
Application Information endpoints
Authorization endpoints
Batch data transfer endpoints
Usage Point endpoints
Schemas 7
The contract defines 7 schemas that model the data the API accepts and returns. The most detailed are ApplicationInformation (12 properties), Authorization (8 properties), AtomEntry (6 properties), UsagePoint (6 properties). Each schema is shown below with its type and property counts.
Specification
The full machine-readable OpenAPI contract behind this narrative.
Source
More from Pacific Gas and Electric 1
Other APIs Pacific Gas and Electric publishes across the network.
This is an independent, third-party profile of PG&E Share My Data (Green Button Connect My Data) ESPI API, published by API Evangelist. We do not operate, host, resell, or support these APIs, and we are not affiliated with or endorsed by the company unless stated above. Everything here is built from publicly available information — the company's own site, developer portal, documentation, public repositories, and the specifications it publishes for public use. Nothing is obtained by breaching a system, defeating an access control, or using credentials.
The Kin Score and Agent Readiness rating are independently calculated assessments of a company's public API artifacts, scored against a published rubric. They are not certifications, endorsements, security assessments, or audits.
Corrections, re-scores, and removal are free — no partnership or purchase required, and you do not need to justify the request. A removed company is recorded as unrated, never scored zero for having asked. Acknowledgement within one business day; removal within two.
info@apievangelist.com
·
Read the full data-sourcing policy →
On a security or compliance team? Put security in the subject line and
you will get a person, not a form — we will tell you exactly which public URLs this profile was built from.