API

Server API.

The HTTP API covers accounts, files, packages, transfers, and admin. Bytes at speed still go over the data port; the API issues permission (tickets) and manages the portal.

Live OpenAPI on your server

Each Farwing Server serves its own machine-readable description. Sign in (session cookie or API key), then:

GET /api/docs              HTML reference (self-contained)
GET /api/docs/openapi.json OpenAPI 3.1 document
Auth required. The document describes the full surface of that server, so it is not left public. Use an admin session or an API key with appropriate scopes.

Credentials

  • Session — portal sign-in cookie after password / SSO / TOTP.
  • API key — created in the portal; send as the server documents (typically a bearer or dedicated header on /api/v1/…).

Areas (tags)

TagCovers
setupFirst start, before any account exists.
authSign-in, second factors, sessions, SSO start.
profileThe caller’s own account (including TOTP enrol).
filesBrowse and change files in a storage root.
transfersJobs and transfer tickets.
packagesSend files to people without accounts.
automationHot folders and scheduled one-way sync.
adminUsers, groups, licence, audit, settings, SMTP, SSO.
serviceHealth and the OpenAPI document itself.

Tickets

Automation that needs a fast copy usually creates a ticket (/api/v1/transfers/ticket and related routes), then runs:

farwing cp --ticket "$TICKET" ./payload.bin

See Getting started for the client side andCLI reference for --ticket-host and retry flags.