How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

Triodos Bank UK Token Endpoint API

The Token Endpoint provides and revokes access tokens and refresh tokens.

Triodos Bank UK Token Endpoint API is one of 10 APIs that Triodos Bank UK publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

Tagged areas include Token Endpoint. The published artifact set on APIs.io includes an OpenAPI specification, API documentation, and an API reference.

This API exposes 2 operations across 2 paths, and defines 41 schemas. It is described by OpenAPI 3.2.0, at version 1.0.

Requests are made against a single base URL, https://xs2a-sandbox.triodos.com/auth.

2 operations 2 paths 41 schemas 2 POST

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.2.0
API Version
1.0
Base URL
https://api-ma.triodos.com/xs2a-bg
Terms of Service
Resource Areas
1

Paths & Operations 2

Across 2 paths, the API surfaces 2 operations — 2 POST. Each is listed below with its method, path, parameters, and response codes.

Token Endpoint 2

The Token Endpoint provides and revokes access tokens and refresh tokens.

POST
/{tenant}/v1/token
Get token
token 2 params body → 200400
POST
/{tenant}/v1/token/revoke
Revoke token
tokenRevocation 2 params body → 200400401

Schemas 41

The contract defines 41 schemas that model the data the API accepts and returns. The most detailed are OIDCClientMetadata (64 properties), ClientMetadata (48 properties), JWK (17 properties), JWSHeader (15 properties). Each schema is shown below with its type and property counts.

Secret
object
4 properties
SoftwareID
object
1 property
TokenTypeURI
object
1 property
HashAlgorithm
object
1 property
ClientRegistrationType
object
1 property
JWEAlgorithm
object
2 properties
KeyType
object
2 properties
AuthorizationDetail
object
6 properties
ClientID
object
1 property
Identifier
object
1 property
ClientAuthenticationMethod
object
1 property
Action
object
1 property
JWTClaimsSet
object
8 properties
Location
object
2 properties
Value
object
1 property
JWSHeader
object
15 properties
GrantType
object
4 properties
JOSEObjectType
object
1 property
Base64URL
object
OIDCClientInformation
object
7 properties
ClientMetadata
object
48 properties
KeyRevocation
object
2 properties
Base64
object
Privilege
object
1 property
DataType
object
1 property
JWSAlgorithm
object
2 properties
KeyUse
object
1 property
OIDCClientMetadata
object
64 properties
SignedJWT
object
8 properties
JWKSet
object
3 properties
Algorithm
object
2 properties
EncryptionMethod
object
2 properties
Payload
object
1 property
SoftwareVersion
object
1 property
AccessTokenType
object
1 property
BearerAccessToken
object
8 properties
Reason
object
1 property
AuthorizationType
object
2 properties
ACR
object
1 property
JWK
object
17 properties
BackChannelTokenDeliveryMode
object
1 property

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

triodos-bank-uk-token-endpoint-api-openapi.yml Raw ↑

Other APIs Triodos Bank UK publishes across the network.

Triodos Bank UK Account Information Service API
Triodos Bank UK Authorization Endpoint API
Triodos Bank UK Client Registration Endpoint API
Triodos Bank UK Configuration Endpoint API
Triodos Bank UK Confirmation of Funds Service API
Triodos Bank UK Extended Account Information Service API
Triodos Bank UK Initial Access Token Service API
Triodos Bank UK Payment Initiation Service API
Triodos Bank UK UserInfo Endpoint API
Where this information came from

This is an independent, third-party profile of Triodos Bank UK Token Endpoint API, published by API Evangelist. We do not operate, host, resell, or support these APIs, and we are not affiliated with or endorsed by the company unless stated above. Everything here is built from publicly available information — the company's own site, developer portal, documentation, public repositories, and the specifications it publishes for public use. Nothing is obtained by breaching a system, defeating an access control, or using credentials.

The Kin Score and Agent Readiness rating are independently calculated assessments of a company's public API artifacts, scored against a published rubric. They are not certifications, endorsements, security assessments, or audits.

Corrections, re-scores, and removal are free — no partnership or purchase required, and you do not need to justify the request. A removed company is recorded as unrated, never scored zero for having asked. Acknowledgement within one business day; removal within two.

info@apievangelist.com · Read the full data-sourcing policy →
On a security or compliance team? Put security in the subject line and you will get a person, not a form — we will tell you exactly which public URLs this profile was built from.