How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

Transmit Security Recommendation API

The Recommendation API from Transmit Security — 3 operation(s) for recommendation.

Transmit Security Recommendation API is one of 9 APIs that Transmit Security publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

This API exposes 7 JSON Schema definitions.

Tagged areas include Recommendation. The published artifact set on APIs.io includes an OpenAPI specification, API documentation, and 7 JSON Schemas.

This API exposes 6 operations across 3 paths, and defines 41 schemas. It is described by OpenAPI 3.2.0, at version 1.0.

Requests are made against 5 base URLs: https://api.sbx.transmitsecurity.io/cis, https://api.transmitsecurity.io/cis, https://api.eu.transmitsecurity.io/cis, https://api.ca.transmitsecurity.io/cis, https://api.au.transmitsecurity.io/cis.

6 operations 3 paths 41 schemas 1 DELETE3 GET1 POST1 PUT

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.2.0
API Version
1.0
Base URL
https://api.transmitsecurity.io
Authentication
HTTP Bearer, HTTP Bearer, OAuth 2.0, OAuth 2.0, OAuth 2.0
Resource Areas
1

Authentication & Security 5

Transmit Security Recommendation API declares 5 security schemes for authenticating requests. It accepts HTTP bearer tokens (JWT) (bearer). It accepts HTTP bearer tokens (JWT) (UserAccessToken). It supports OAuth 2.0 (AdminAccessToken) using the clientCredentials flow. It supports OAuth 2.0 (ClientAccessToken) using the clientCredentials flow. It supports OAuth 2.0 (OrgAdminAccessToken) using the clientCredentials flow.

  • UserAccessToken — A token returned upon end-user authentication, which provides access to resources and data for the user and app for which it was generated
  • AdminAccessToken — A token generated by a management application using the [token endpoint](/openapi/token.openapi/other/getaccesstoken). It provides access to all resources for…
  • ClientAccessToken — A token generated by an end-user application using the [token endpoint](/openapi/token.openapi/other/getaccesstoken). It provides access to resources and data…
  • OrgAdminAccessToken — A token returned upon B2B authentication for a user that has the organizationAdmin or organizationCreator role.

Paths & Operations 6

Across 3 paths, the API surfaces 6 operations — 1 DELETE, 3 GET, 1 POST, 1 PUT. Each is listed below with its method, path, parameters, and response codes.

Recommendation 6
GET
/recommendation
Get recommendation
getRiskRecommendation 2 params → 200400401403429463500
POST
/recommendation/rulesdeprecated
Create rule
createRule body → 201400401403409429500
GET
/recommendation/rulesdeprecated
Get all rules
getRules → 200400401403429500
GET
/recommendation/rules/{rule_id}deprecated
Get rule by ID
getRuleById 1 param → 200400401403404429500
PUT
/recommendation/rules/{rule_id}deprecated
Update rule by ID
updateRule 1 param body → 200400401403404429500
DELETE
/recommendation/rules/{rule_id}deprecated
Delete rule by ID
deleteRule 1 param → 200400401403404429500

Schemas 41

The contract defines 41 schemas that model the data the API accepts and returns. The most detailed are context (35 properties), transaction_data (11 properties), recommendation_full (11 properties), transaction_address (9 properties). Each schema is shown below with its type and property counts.

recommendation_type
string
Recommendation type.
rule_mode
string
Allows you to simulate a rule and evaluate its impact before releasing it to production. The simulation occurs each time a recommendation is requested. If a pr…
transaction_product
object
A single product line item.
4 properties
rule
object
Recommendation rule
6 properties 5 required
device_public_keys
object
1 property
action_type
string
Type of client action this recommendation was issued for.
transaction_purchase
object
Purchase details for the transaction.
3 properties
os_versions
object
1 property
get_all_response
object
1 property
challenge_type
string
The type of challenge enforced for the reported action.
browser_names
object
1 property
risk_score
number
Used to assess the risk level of the action.
avs_match_level
string
AVS match level.
user_ids
object
1 property
recommendation
object
Decision the engine produced for the action.
3 properties 1 required
transaction_card
object
Card-level identifiers for the party.
3 properties
update_delete_rule_response
object
1 property
recommendation_full
object
Recommendation
11 properties 6 required
matcher
Activity field matcher. Only one matcher can be defined per rule.
threats
array
List of all detected threats.
reasons
array
Reasons that contributed to the recommendation.
transaction_avs
object
Address Verification Service result for the transaction.
3 properties
ip_cidrs
object
1 property
get_rule_response
object
2 properties
context
object
Identifies the context in which the action occurred.
35 properties
result_type
string
The outcome of the action.
transaction_payee
Payee party of the transaction.
risk_signals
object
Additional informative signals derived from the action.
4 properties
transaction_address
object
Address and contact information (used by billingInfo and shippingInfo).
9 properties
transaction_party
object
Shared shape for a transaction party (payee or payer).
7 properties
custom_attributes
object
Tenant-defined custom attributes attached to the action. These add context to an action but must match the schema defined in the Admin Portal. Invalid attribut…
rule_recommendation_type
string
Recommendation type
device_fingerprints
object
1 property
transaction_type
string
Transaction type.
preview_rule
object
Rule configured in preview mode that would have determined this action's recommendation if all enabled rules were in production. Useful for impact analysis wit…
3 properties
country_codes
object
1 property
transaction_data
object
Transaction data-points provided with the action via the SDK.
11 properties
transaction_method
string
Transaction method.
transaction_payer
object
Payer party of the transaction. Adds customer-tier and billing-info fields on top of the shared party shape.
2 properties
create_rule_response
object
2 properties
device_ids
object
1 property

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

transmit-security-recommendation-api-openapi.yml Raw ↑

Other APIs Transmit Security publishes across the network.

Mosaic Orchestration API
Transmit Security Applications API
Transmit Security Auth API
Transmit Security Manage API
Transmit Security Organizations API
Transmit Security Token API
Transmit Security Users API
Transmit Security Verification API
Where this information came from

This is an independent, third-party profile of Transmit Security Recommendation API, published by API Evangelist. We do not operate, host, resell, or support these APIs, and we are not affiliated with or endorsed by the company unless stated above. Everything here is built from publicly available information — the company's own site, developer portal, documentation, public repositories, and the specifications it publishes for public use. Nothing is obtained by breaching a system, defeating an access control, or using credentials.

The Kin Score and Agent Readiness rating are independently calculated assessments of a company's public API artifacts, scored against a published rubric. They are not certifications, endorsements, security assessments, or audits.

Corrections, re-scores, and removal are free — no partnership or purchase required, and you do not need to justify the request. A removed company is recorded as unrated, never scored zero for having asked. Acknowledgement within one business day; removal within two.

info@apievangelist.com · Read the full data-sourcing policy →
On a security or compliance team? Put security in the subject line and you will get a person, not a form — we will tell you exactly which public URLs this profile was built from.