How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

Salesforce Composite API

The Composite API executes a series of REST API requests in a single POST request, or retrieves a list of other composite resources with a GET request.There are three types of Composite requests sometime referred to as APIs:- [Composite](https://developer.salesforce.com/docs/atlas.en-us.api_rest.meta/api_rest/resources_composite_composite.htm) (the original)- [Composite Batch](https://developer.salesforce.com/docs/atlas.en-us.api_rest.meta/api_rest/resources_composite_batch.htm)- [Composite Graph](https://developer.salesforce.com/docs/atlas.en-us.api_rest.meta/api_rest/resources_composite_graph.htm) (the most recent)

Salesforce Composite API is one of 294 APIs that Salesforce publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

This API exposes 1 JSON Schema definition.

Tagged areas include Composite. The published artifact set on APIs.io includes an OpenAPI specification, API documentation, an API reference, authentication docs, a getting-started guide, and 1 JSON Schema.

This API exposes 9 operations across 7 paths, and defines 20 schemas. It is described by OpenAPI 3.1.0, at version v63.0.

Requests are made against a single base URL, https://{instance}.salesforce.com/services/data/v{version}/jobs.

9 operations 7 paths 20 schemas 1 DELETE1 GET1 PATCH6 POST

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.1.0
API Version
v63.0
Base URL
https://{instance}.salesforce.com/services/data
Authentication
HTTP Bearer
Resource Areas
1

Authentication & Security 1

Salesforce Composite API declares 1 security scheme for authenticating requests. It accepts HTTP bearer tokens (BearerAuth). By default, every request must be authenticated.

  • BearerAuth — OAuth 2.0 Bearer token obtained from the Salesforce OAuth 2.0 token endpoint. Include this token in the Authorization header as "Bearer {accesstoken}".

Paths & Operations 9

Across 7 paths, the API surfaces 9 operations — 1 DELETE, 1 GET, 1 PATCH, 6 POST. Each is listed below with its method, path, parameters, and response codes.

Composite 9

The Composite API executes a series of REST API requests in a single POST request, or retrieves a list of other composite resources with a GET request. There are three types of Co…

POST
/data/v64.0/composite
Salesforce Composite
Composite 1 param body → 200
POST
/data/v64.0/composite/graph
Salesforce Composite Graph
CompositeGraph body → 200
POST
/data/v64.0/composite/batch
Salesforce Composite Batch
CompositeBatch body → 200
POST
/composite/batch
Salesforce Execute a Batch of Requests
executeBatchRequest body → 200401
POST
/composite
Salesforce Execute a Composite Request With Dependent Subrequests
executeCompositeRequest body → 200400401
POST
/composite/sobjects
Salesforce Sobject Collections Create
collectionsCreate body → 200401
PATCH
/composite/sobjects
Salesforce Sobject Collections Update
collectionsUpdate body → 200401
DELETE
/composite/sobjects
Salesforce Sobject Collections Delete
collectionsDelete 2 params → 200401
GET
/composite/sobjects/{sobjectType}
Salesforce Sobject Collections Retrieve
collectionsRetrieve 3 params → 200401

Schemas 20

The contract defines 20 schemas that model the data the API accepts and returns. The most detailed are CompositeRequest2 (4 properties), CompositeRequest1 (4 properties), CompositeResponse (4 properties), Error (3 properties). Each schema is shown below with its type and property counts.

CompositeResponse
object
4 properties 4 required
SuccessfulCompositeGraph
object
1 property 1 required
Body2
object
2 properties 2 required
GraphResponse
object
1 property 1 required
Body1
object
3 properties 3 required
CompositeRequest
object
1 property 1 required
CompositeRequest1
object
4 properties 4 required
CompositeRequest2
object
4 properties 3 required
HttpHeaders
object
1 property 1 required
SObjectRecord
object
A Salesforce SObject record. Contains an attributes object describing the record type and URL, plus any number of field name/value pairs depending on the objec…
2 properties 1 required
Graph1
object
3 properties 3 required
SuccessfulComposite
object
1 property 1 required
CompositeResponse_2
object
The result of a composite request, containing results for each subrequest in order.
1 property
Body
object
3 properties
Graph
object
2 properties 2 required
CompositeGraphRequest
object
1 property 1 required
BatchRequest
object
2 properties 2 required
Error
object
An error response from the Salesforce REST API, describing the problem with the request.
3 properties
CompositeBatchRequest
object
2 properties 2 required
CompositeRequest_2
object
A composite request containing an ordered series of subrequests where later requests can reference the results of earlier ones using reference IDs.
3 properties 1 required

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

salesforce-composite-api-openapi.yml Raw ↑

Other APIs Salesforce publishes across the network.

Salesforce REST API
Salesforce SOAP API
Salesforce Bulk API
Salesforce Streaming API
Salesforce Metadata API
Salesforce Tooling API
Salesforce Connect API (Chatter)
Salesforce Analytics REST API
Salesforce Reports and Dashboards REST API
Salesforce Einstein Platform Services API
Salesforce Einstein Prediction Service API
Salesforce GraphQL API
Where this information came from

This is an independent, third-party profile of Salesforce Composite API, published by API Evangelist. We do not operate, host, resell, or support these APIs, and we are not affiliated with or endorsed by the company unless stated above. Everything here is built from publicly available information — the company's own site, developer portal, documentation, public repositories, and the specifications it publishes for public use. Nothing is obtained by breaching a system, defeating an access control, or using credentials.

The Kin Score and Agent Readiness rating are independently calculated assessments of a company's public API artifacts, scored against a published rubric. They are not certifications, endorsements, security assessments, or audits.

Corrections, re-scores, and removal are free — no partnership or purchase required, and you do not need to justify the request. A removed company is recorded as unrated, never scored zero for having asked. Acknowledgement within one business day; removal within two.

info@apievangelist.com · Read the full data-sourcing policy →
On a security or compliance team? Put security in the subject line and you will get a person, not a form — we will tell you exactly which public URLs this profile was built from.