1. OAuth 2.0
marketplace-doc
  • Data Ingestion
  • Errors
  • Introduction
  • Loan API & Deduction Lifecycle
  • Getting Started
  • OAuth
  • Webhooks
  • Embedded Journey
  • OpenSylo Marketplace Integration API
    • OAuth 2.0
      • Start OAuth authorization
        GET
      • Exchange authorization code or refresh token
        POST
      • Revoke a token
        POST
      • Discover OAuth capabilities
        GET
    • Data Ingestion
      • Submit single merchant data
      • Submit bulk merchant data
      • Poll batch processing status
      • Get merchant credit score
      • Data ingestion health check
    • Sales & Events
      • Submit a sales event
      • Submit a repayment event
      • Submit an account flag
    • Loan API
      • Get active loans for a merchant
      • Get loan status
      • Validate deduction amounts
      • Bulk loan status
    • Inbound Webhooks
      • Repayment events
      • Settlement events
    • Outbound Webhooks
      • loan.approved
      • loan.disbursed
      • loan.repayment_updated
      • loan.nearly_complete
      • loan.completed
      • loan.defaulted
      • merchant.created
      • kyc.submitted
      • kyc.approved
      • kyc.rejected
      • funding_request.created
      • funding_request.fulfilled
      • funding_request.rejected
    • Embedded Journey (Marketplace API)
      • Create (or fetch) a merchant
      • Get merchant status (KYC, credit score, funding requests)
      • Update business KYC information
      • Add directors (bulk)
      • Attach a KYC document
      • Submit KYC for review
      • Submit sales data for credit scoring
      • Create a funding request
      • Mint an embed token for the hosted journey
  • OpenSylo Marketplace API
    • OAuth 2.0
      • Start OAuth authorization
      • Exchange code or refresh token
      • Revoke a token
      • OAuth discovery / client metadata
    • Data Ingestion
      • Submit single merchant data
      • Submit bulk merchant data
      • Get merchant credit score
      • Integration health check
    • Loan API
      • Get active loans for a merchant
      • Get loan status
      • Validate deduction amounts
      • Bulk loan status check
    • Inbound Webhooks
      • Send repayment webhook
      • Send settlement webhook
  1. OAuth 2.0

Discover OAuth capabilities

GET
/oauth/client-metadata
Returns OAuth server metadata for the given client, including supported
grant types, scopes, and code challenge methods.

Request

Query Params

Responses

🟢200OK
application/json
Client metadata returned successfully.
Bodyapplication/json

🟠400Bad Request
Request Request Example
Shell
JavaScript
Java
Swift
curl --location 'https://api.opensylo.com/oauth/client-metadata?client_id=mkt_live_abc123def456'
Response Response Example
200 - Success Example
{
    "grant_types_supported": [
        "authorization_code",
        "refresh_token"
    ],
    "response_types_supported": [
        "code"
    ],
    "scopes_supported": [
        "data.share.sales",
        "data.share.fulfillment",
        "data.share.payouts",
        "data.share.risk",
        "data.share.profile",
        "credit.score.read",
        "repayment.report",
        "sales.read",
        "sales.write",
        "repayments.read",
        "repayments.write",
        "account.flags.read",
        "account.flags.write",
        "merchant.profile.read",
        "marketplace.write",
        "marketplace.read"
    ],
    "code_challenge_methods_supported": [
        "S256",
        "plain"
    ],
    "token_endpoint_auth_methods_supported": [
        "client_secret_post"
    ]
}
Modified at 2026-06-10 14:59:29
Previous
Revoke a token
Next
Submit single merchant data
Built with