Every partner who wants your data waits for a custom integration.
Your workflows, published as APIs partners can build on.
Give partners, customers and your own apps a proper API to build on, on your own address and with an OpenAPI document they can load into their tools. Each partner gets its own access and its own limits, and every call is logged against the workflow run that answered it. A new partner API is usually live within days, built from workflows your team already runs.
APIs your partners can build on
A reseller wants order status inside its own system, and a customer's finance team wants invoices in theirs. The workflows that already do that work in STRAX are published as a proper API: your own paths, such as /orders/v1/customers/{id}, on your own address or domain, with a version number and an OpenAPI document partners load into their tools. When a new version arrives, the old one carries a deprecation notice and a sunset date that every caller is told about well before it stops answering.
- Your own paths and versions, on the console's address or on a hostname in your company's domain.
- An OpenAPI document for every API, with its parameters, security and error responses described.
- The same workflows serve partners, customers and your own apps.
- Draft, published, deprecated and retired, with the dates announced to callers in every response.
Each partner with its own access and limits
Every partner gets its own way in, so access can be granted, narrowed or withdrawn one partner at a time. Keys are issued per application, or partners sign in with tokens from your own identity provider. Limits are set per partner and hold even when the gateway runs on several servers, so one busy caller cannot use up another's share.
- API keys per application, shown once, stored only as hashes, rotated with an overlap window and expiring on a date you set.
- OAuth2 and OpenID Connect tokens from your identity provider, opaque tokens checked by introspection, and scopes per route.
- Mutual TLS with each partner's client certificate pinned, plus address allowlists, blocked ranges and country rules.
- Per-minute rate limits and daily or monthly quotas per partner, with usage reports per organisation that export to CSV.
Safe to retry, and checked before it runs
A partner's system retries when the network drops, and a retried refund must never be paid twice. A call sent again with the same Idempotency-Key gets the first answer back and does not run a second time. Every request is also checked against the published contract before any work starts, so a malformed call is refused with a list of what is wrong and your workflows only ever see clean input.
- Long jobs answer at once with a status to poll, or with a signed callback when the run ends.
- Answers to GET requests can be cached for a short time.
- When the queue is deep, callers are told to come back shortly and are never left waiting for a timeout.
Every call traced to the run behind it
When a partner reports a failed call, your team finds it in the request log by time, partner or the partner's own trace id, and opens the workflow run that answered it. Sensitive headers and fields are masked in the log. E-mail alerts reach the people you name when error rates, response times, sign-in failures or quota use cross a threshold, and a live monitoring screen shows every API together.
- A Try it console sends test calls to any route through the real gateway.
- An API that targets production runs only on production workers.
- APIs and their workflows move from staging to production with the rest of your configuration.
Request a quote for the API gateway →
Keep exploring
More in Connect
One hub keeps every system on the same record.
Billing, CRM, provisioning and support all show the same customer, order and asset, updated automatically within seconds and with nothing re-keyed.
Integration engine →Databases, APIs and a growing list of SaaS profiles.
SQL Server, MySQL and PostgreSQL with change capture, any REST or OpenAPI service, webhooks, and ready-made SaaS profiles from the marketplace.
Connectors →A working integration, installed from a catalogue.
Ready-made bundles of systems, mappings, workflows, reports and portals, free and premium, each one screened by STRAX before it can run.
Feature Marketplace →See it on your own systems.
A demo takes about an hour and runs against systems like yours, starting with the ones you would connect first.


