Skip to navigation

Execute a gated upstream request

Runs one request against the fixed upstream host for the enrolled system (Stripe: https://api.stripe.com). Requires a valid lease id or ALLOW token; the provided method/path/body must byte-match the lease. On any mismatch, expired/reused lease, revoked credential, or gate error the call fails closed with a receipt and no upstream request is made. Body must be JSON and ≤ 1 MB; idempotencyKey is passed through to Stripe.

Request

This endpoint expects an object.
systemIdstringRequired
methodstringRequired
pathstringRequired

must begin /v1/

leaseIdstringOptional
tokenstringOptional

ALLOW token (lease created implicitly)

bodyobjectOptional
idempotencyKeystringOptional

Response

Upstream response body verbatim on success. On a fail-closed guardrail the response is {"ok": false, "reason": ..., "upstreamCalled": false}.

Errors

400
Bad Request Error