[{"data":1,"prerenderedAt":807},["ShallowReactive",2],{"navigation_docs_zh":3,"-zh-getting-started-enterprise-integration":388,"-zh-getting-started-enterprise-integration-surround":802},[4,22,40,50,64,82,360,374],{"title":5,"icon":6,"path":7,"stem":8,"children":9,"page":21},"快速开始","i-lucide-rocket","\u002Fzh\u002Fgetting-started","zh\u002F1.getting-started",[10,13,17],{"title":5,"path":11,"stem":12},"\u002Fzh\u002Fgetting-started\u002Fquick-start","zh\u002F1.getting-started\u002F1.quick-start",{"title":14,"path":15,"stem":16},"信任模型","\u002Fzh\u002Fgetting-started\u002Ftrust-model","zh\u002F1.getting-started\u002F2.trust-model",{"title":18,"path":19,"stem":20},"大客户端到端接入指南","\u002Fzh\u002Fgetting-started\u002Fenterprise-integration","zh\u002F1.getting-started\u002F3.enterprise-integration",false,{"title":23,"icon":24,"path":25,"stem":26,"children":27,"page":21},"自研 Storefront","i-lucide-store","\u002Fzh\u002Fstorefront","zh\u002F2.storefront",[28,32,36],{"title":29,"path":30,"stem":31},"第三方 Storefront","\u002Fzh\u002Fstorefront\u002Fthird-party-storefront","zh\u002F2.storefront\u002F1.third-party-storefront",{"title":33,"path":34,"stem":35},"Turnstile 的信任边界","\u002Fzh\u002Fstorefront\u002Fchallenge-and-turnstile","zh\u002F2.storefront\u002F2.challenge-and-turnstile",{"title":37,"path":38,"stem":39},"第三方店铺前端公共 API","\u002Fzh\u002Fstorefront\u002Fpublic-api","zh\u002F2.storefront\u002F3.public-api",{"title":41,"icon":42,"path":43,"stem":44,"children":45,"page":21},"OAuth 与身份","i-lucide-key-round","\u002Fzh\u002Foauth","zh\u002F3.oauth",[46],{"title":47,"path":48,"stem":49},"第三方账号授权安全边界","\u002Fzh\u002Foauth\u002Fauthorization-code-pkce","zh\u002F3.oauth\u002F1.authorization-code-pkce",{"title":51,"icon":52,"path":53,"stem":54,"children":55,"page":21},"开发者平台","i-lucide-blocks","\u002Fzh\u002Fplatform","zh\u002F4.platform",[56,60],{"title":57,"path":58,"stem":59},"应用、版本、安装与 Scope","\u002Fzh\u002Fplatform\u002Fapps-installations-scopes","zh\u002F4.platform\u002F1.apps-installations-scopes",{"title":61,"path":62,"stem":63},"Origin、Redirect、反向代理与环境","\u002Fzh\u002Fplatform\u002Fsecurity-and-environments","zh\u002F4.platform\u002F2.security-and-environments",{"title":65,"icon":66,"path":67,"stem":68,"children":69,"page":21},"运行时扩展","i-lucide-workflow","\u002Fzh\u002Fruntime","zh\u002F5.runtime",[70,74,78],{"title":71,"path":72,"stem":73},"安装级 Webhook","\u002Fzh\u002Fruntime\u002Fwebhooks","zh\u002F5.runtime\u002F1.webhooks",{"title":75,"path":76,"stem":77},"库存同步","\u002Fzh\u002Fruntime\u002Finventory-sync","zh\u002F5.runtime\u002F2.inventory-sync",{"title":79,"path":80,"stem":81},"自动发货 Provider","\u002Fzh\u002Fruntime\u002Fauto-fulfillment","zh\u002F5.runtime\u002F3.auto-fulfillment",{"title":83,"icon":84,"path":85,"stem":86,"children":87,"page":21},"API 参考","i-lucide-braces","\u002Fzh\u002Freference","zh\u002F6.reference",[88,91,95],{"title":83,"path":89,"stem":90},"\u002Fzh\u002Freference\u002Fapi","zh\u002F6.reference\u002F1.api",{"title":92,"path":93,"stem":94},"错误、幂等与限流","\u002Fzh\u002Freference\u002Ferrors-and-limits","zh\u002F6.reference\u002F2.errors-and-limits",{"title":96,"path":97,"stem":98,"children":99,"page":21},"Endpoint 目录","\u002Fzh\u002Freference\u002Foperations","zh\u002F6.reference\u002F3.operations",[100,104,108,112,116,120,124,128,132,136,140,144,148,152,156,160,164,168,172,176,180,184,188,192,196,200,204,208,212,216,220,224,228,232,236,240,244,248,252,256,260,264,268,272,276,280,284,288,292,296,300,304,308,312,316,320,324,328,332,336,340,344,348,352,356],{"title":101,"path":102,"stem":103},"在官方认证域执行密码重置","\u002Fzh\u002Freference\u002Foperations\u002Fconfirm-official-password-reset","zh\u002F6.reference\u002F3.operations\u002F01.confirm-official-password-reset",{"title":105,"path":106,"stem":107},"在官方认证域请求密码重置","\u002Fzh\u002Freference\u002Foperations\u002Frequest-official-password-reset","zh\u002F6.reference\u002F3.operations\u002F02.request-official-password-reset",{"title":109,"path":110,"stem":111},"在官方认证域注册客户","\u002Fzh\u002Freference\u002Foperations\u002Fregister-official-storefront-customer","zh\u002F6.reference\u002F3.operations\u002F03.register-official-storefront-customer",{"title":113,"path":114,"stem":115},"读取公开站点启动配置","\u002Fzh\u002Freference\u002Foperations\u002Fget-public-bootstrap","zh\u002F6.reference\u002F3.operations\u002F04.get-public-bootstrap",{"title":117,"path":118,"stem":119},"读取公开分类","\u002Fzh\u002Freference\u002Foperations\u002Flist-public-categories","zh\u002F6.reference\u002F3.operations\u002F05.list-public-categories",{"title":121,"path":122,"stem":123},"读取店铺公开商品详情","\u002Fzh\u002Freference\u002Foperations\u002Fget-public-merchant-product","zh\u002F6.reference\u002F3.operations\u002F06.get-public-merchant-product",{"title":125,"path":126,"stem":127},"读取店铺公开分类","\u002Fzh\u002Freference\u002Foperations\u002Flist-public-merchant-categories","zh\u002F6.reference\u002F3.operations\u002F07.list-public-merchant-categories",{"title":129,"path":130,"stem":131},"读取店铺公开商品","\u002Fzh\u002Freference\u002Foperations\u002Flist-public-merchant-products","zh\u002F6.reference\u002F3.operations\u002F08.list-public-merchant-products",{"title":133,"path":134,"stem":135},"读取公开店铺资料","\u002Fzh\u002Freference\u002Foperations\u002Fget-public-merchant","zh\u002F6.reference\u002F3.operations\u002F09.get-public-merchant",{"title":137,"path":138,"stem":139},"按 slug 读取公开商品","\u002Fzh\u002Freference\u002Foperations\u002Fget-public-product","zh\u002F6.reference\u002F3.operations\u002F10.get-public-product",{"title":141,"path":142,"stem":143},"读取公开商品目录","\u002Fzh\u002Freference\u002Foperations\u002Flist-public-products","zh\u002F6.reference\u002F3.operations\u002F11.list-public-products",{"title":145,"path":146,"stem":147},"安全取消尚未进入不可逆阶段的官方托管结账","\u002Fzh\u002Freference\u002Foperations\u002Fcancel-hosted-checkout-browser","zh\u002F6.reference\u002F3.operations\u002F12.cancel-hosted-checkout-browser",{"title":149,"path":150,"stem":151},"继续官方托管结账流程","\u002Fzh\u002Freference\u002Foperations\u002Fcontinue-hosted-checkout-browser","zh\u002F6.reference\u002F3.operations\u002F13.continue-hosted-checkout-browser",{"title":153,"path":154,"stem":155},"读取官方托管结账安全摘要","\u002Fzh\u002Freference\u002Foperations\u002Fget-hosted-checkout-browser-projection","zh\u002F6.reference\u002F3.operations\u002F14.get-hosted-checkout-browser-projection",{"title":157,"path":158,"stem":159},"读取已批准的精确回跳地址与原始 state","\u002Fzh\u002Freference\u002Foperations\u002Freturn-hosted-checkout-browser","zh\u002F6.reference\u002F3.operations\u002F15.return-hosted-checkout-browser",{"title":161,"path":162,"stem":163},"单次消费官方托管结账票据并读取安全摘要","\u002Fzh\u002Freference\u002Foperations\u002Fconsume-hosted-checkout-browser-ticket","zh\u002F6.reference\u002F3.operations\u002F16.consume-hosted-checkout-browser-ticket",{"title":165,"path":166,"stem":167},"单次消费官方托管登录票据并读取请求方投影","\u002Fzh\u002Freference\u002Foperations\u002Fconsume-hosted-login-browser-ticket","zh\u002F6.reference\u002F3.operations\u002F17.consume-hosted-login-browser-ticket",{"title":169,"path":170,"stem":171},"按语言读取当前已发布法律正文","\u002Fzh\u002Freference\u002Foperations\u002Flist-public-legal-documents","zh\u002F6.reference\u002F3.operations\u002F18.list-public-legal-documents",{"title":173,"path":174,"stem":175},"读取官方授权确认事实","\u002Fzh\u002Freference\u002Foperations\u002Fdescribe-oauth-authorization","zh\u002F6.reference\u002F3.operations\u002F19.describe-oauth-authorization",{"title":177,"path":178,"stem":179},"撤销当前 DPoP token family","\u002Fzh\u002Freference\u002Foperations\u002Frevoke-oauth-token","zh\u002F6.reference\u002F3.operations\u002F20.revoke-oauth-token",{"title":181,"path":182,"stem":183},"以 PKCE 或轮换 refresh token 交换 DPoP token","\u002Fzh\u002Freference\u002Foperations\u002Fexchange-oauth-token","zh\u002F6.reference\u002F3.operations\u002F21.exchange-oauth-token",{"title":185,"path":186,"stem":187},"通过 API Key 读取公开分类","\u002Fzh\u002Freference\u002Foperations\u002Flist-api-key-catalog-categories","zh\u002F6.reference\u002F3.operations\u002F22.list-api-key-catalog-categories",{"title":189,"path":190,"stem":191},"通过 API Key 读取公开商品","\u002Fzh\u002Freference\u002Foperations\u002Fget-api-key-catalog-product","zh\u002F6.reference\u002F3.operations\u002F23.get-api-key-catalog-product",{"title":193,"path":194,"stem":195},"通过 API Key 读取公开商品目录","\u002Fzh\u002Freference\u002Foperations\u002Flist-api-key-catalog-products","zh\u002F6.reference\u002F3.operations\u002F24.list-api-key-catalog-products",{"title":197,"path":198,"stem":199},"取消尚未进入不可逆支付阶段的托管结账","\u002Fzh\u002Freference\u002Foperations\u002Fcancel-hosted-checkout-session","zh\u002F6.reference\u002F3.operations\u002F25.cancel-hosted-checkout-session",{"title":201,"path":202,"stem":203},"读取绑定安装的托管结账状态","\u002Fzh\u002Freference\u002Foperations\u002Fget-hosted-checkout-session","zh\u002F6.reference\u002F3.operations\u002F26.get-hosted-checkout-session",{"title":205,"path":206,"stem":207},"创建服务端重算的托管结账会话","\u002Fzh\u002Freference\u002Foperations\u002Fcreate-hosted-checkout-session","zh\u002F6.reference\u002F3.operations\u002F27.create-hosted-checkout-session",{"title":209,"path":210,"stem":211},"创建官方托管登录流程","\u002Fzh\u002Freference\u002Foperations\u002Finitiate-hosted-login","zh\u002F6.reference\u002F3.operations\u002F28.initiate-hosted-login",{"title":213,"path":214,"stem":215},"以 PKCE 单次消费托管登录返回码","\u002Fzh\u002Freference\u002Foperations\u002Fconsume-hosted-login-return","zh\u002F6.reference\u002F3.operations\u002F29.consume-hosted-login-return",{"title":217,"path":218,"stem":219},"读取当前 API Key 的标识与 scope","\u002Fzh\u002Freference\u002Foperations\u002Fget-api-key-identity","zh\u002F6.reference\u002F3.operations\u002F30.get-api-key-identity",{"title":221,"path":222,"stem":223},"读取安装级凭据绑定身份","\u002Fzh\u002Freference\u002Foperations\u002Fget-installation-credential-identity","zh\u002F6.reference\u002F3.operations\u002F31.get-installation-credential-identity",{"title":225,"path":226,"stem":227},"读取安装级凭据就绪与阻塞事实","\u002Fzh\u002Freference\u002Foperations\u002Fget-installation-credential-readiness","zh\u002F6.reference\u002F3.operations\u002F32.get-installation-credential-readiness",{"title":229,"path":230,"stem":231},"校验并保存购物车短期地址令牌","\u002Fzh\u002Freference\u002Foperations\u002Fset-public-cart-address","zh\u002F6.reference\u002F3.operations\u002F33.set-public-cart-address",{"title":233,"path":234,"stem":235},"生成配送税费优惠统一结算报价","\u002Fzh\u002Freference\u002Foperations\u002Fquote-public-cart-checkout","zh\u002F6.reference\u002F3.operations\u002F34.quote-public-cart-checkout",{"title":237,"path":238,"stem":239},"由购物车创建官方托管结账会话","\u002Fzh\u002Freference\u002Foperations\u002Fcheckout-public-cart","zh\u002F6.reference\u002F3.operations\u002F35.checkout-public-cart",{"title":241,"path":242,"stem":243},"清空公开购物车","\u002Fzh\u002Freference\u002Foperations\u002Fclear-public-cart","zh\u002F6.reference\u002F3.operations\u002F36.clear-public-cart",{"title":245,"path":246,"stem":247},"移除公开购物车 SKU","\u002Fzh\u002Freference\u002Foperations\u002Fremove-public-cart-item","zh\u002F6.reference\u002F3.operations\u002F37.remove-public-cart-item",{"title":249,"path":250,"stem":251},"更新公开购物车 SKU 数量","\u002Fzh\u002Freference\u002Foperations\u002Fupdate-public-cart-item-quantity","zh\u002F6.reference\u002F3.operations\u002F38.update-public-cart-item-quantity",{"title":253,"path":254,"stem":255},"向公开购物车添加 SKU","\u002Fzh\u002Freference\u002Foperations\u002Fadd-public-cart-item","zh\u002F6.reference\u002F3.operations\u002F39.add-public-cart-item",{"title":257,"path":258,"stem":259},"移除购物车优惠码","\u002Fzh\u002Freference\u002Foperations\u002Fremove-public-cart-promotion","zh\u002F6.reference\u002F3.operations\u002F40.remove-public-cart-promotion",{"title":261,"path":262,"stem":263},"校验并应用购物车优惠码","\u002Fzh\u002Freference\u002Foperations\u002Fapply-public-cart-promotion","zh\u002F6.reference\u002F3.operations\u002F41.apply-public-cart-promotion",{"title":265,"path":266,"stem":267},"按实时价格与库存生成短期报价","\u002Fzh\u002Freference\u002Foperations\u002Fquote-public-cart","zh\u002F6.reference\u002F3.operations\u002F42.quote-public-cart",{"title":269,"path":270,"stem":271},"撤销公开购物车访问票据","\u002Fzh\u002Freference\u002Foperations\u002Frevoke-public-cart","zh\u002F6.reference\u002F3.operations\u002F43.revoke-public-cart",{"title":273,"path":274,"stem":275},"读取安装绑定的公开购物车","\u002Fzh\u002Freference\u002Foperations\u002Fget-public-cart","zh\u002F6.reference\u002F3.operations\u002F44.get-public-cart",{"title":277,"path":278,"stem":279},"创建安装绑定的公开购物车","\u002Fzh\u002Freference\u002Foperations\u002Fcreate-public-cart","zh\u002F6.reference\u002F3.operations\u002F45.create-public-cart",{"title":281,"path":282,"stem":283},"读取退款退货售后资格","\u002Fzh\u002Freference\u002Foperations\u002Fget-storefront-order-after-sales-eligibility","zh\u002F6.reference\u002F3.operations\u002F46.get-storefront-order-after-sales-eligibility",{"title":285,"path":286,"stem":287},"提交退款或进入官方售后流程","\u002Fzh\u002Freference\u002Foperations\u002Frequest-storefront-order-after-sales","zh\u002F6.reference\u002F3.operations\u002F47.request-storefront-order-after-sales",{"title":289,"path":290,"stem":291},"读取订单取消资格","\u002Fzh\u002Freference\u002Foperations\u002Fget-storefront-order-cancellation-eligibility","zh\u002F6.reference\u002F3.operations\u002F48.get-storefront-order-cancellation-eligibility",{"title":293,"path":294,"stem":295},"cancelStorefrontOrder","\u002Fzh\u002Freference\u002Foperations\u002Fcancel-storefront-order","zh\u002F6.reference\u002F3.operations\u002F49.cancel-storefront-order",{"title":297,"path":298,"stem":299},"读取 receipt 绑定的最小订单状态","\u002Fzh\u002Freference\u002Foperations\u002Fget-storefront-order","zh\u002F6.reference\u002F3.operations\u002F50.get-storefront-order",{"title":301,"path":302,"stem":303},"以 customer-bound receipt proof 读取最小订单列表","\u002Fzh\u002Freference\u002Foperations\u002Flist-storefront-orders","zh\u002F6.reference\u002F3.operations\u002F51.list-storefront-orders",{"title":305,"path":306,"stem":307},"幂等重放 dead 或 retrying 投递","\u002Fzh\u002Freference\u002Foperations\u002Freplay-installation-webhook-delivery","zh\u002F6.reference\u002F3.operations\u002F52.replay-installation-webhook-delivery",{"title":309,"path":310,"stem":311},"读取安装绑定的最小投递状态","\u002Fzh\u002Freference\u002Foperations\u002Flist-installation-webhook-deliveries","zh\u002F6.reference\u002F3.operations\u002F53.list-installation-webhook-deliveries",{"title":313,"path":314,"stem":315},"读取无 PII 的签名校验 fixture","\u002Fzh\u002Freference\u002Foperations\u002Fget-installation-webhook-signature-fixture","zh\u002F6.reference\u002F3.operations\u002F54.get-installation-webhook-signature-fixture",{"title":317,"path":318,"stem":319},"更新或停用安装绑定的 Webhook 订阅","\u002Fzh\u002Freference\u002Foperations\u002Fupdate-installation-webhook","zh\u002F6.reference\u002F3.operations\u002F55.update-installation-webhook",{"title":321,"path":322,"stem":323},"读取安装绑定的 Webhook 订阅","\u002Fzh\u002Freference\u002Foperations\u002Flist-installation-webhooks","zh\u002F6.reference\u002F3.operations\u002F56.list-installation-webhooks",{"title":325,"path":326,"stem":327},"创建安装绑定的 Webhook 订阅","\u002Fzh\u002Freference\u002Foperations\u002Fcreate-installation-webhook","zh\u002F6.reference\u002F3.operations\u002F57.create-installation-webhook",{"title":329,"path":330,"stem":331},"读取安装获准的 Webhook 事件类型","\u002Fzh\u002Freference\u002Foperations\u002Flist-installation-webhook-events","zh\u002F6.reference\u002F3.operations\u002F58.list-installation-webhook-events",{"title":333,"path":334,"stem":335},"读取公开联系渠道","\u002Fzh\u002Freference\u002Foperations\u002Fget-public-contact","zh\u002F6.reference\u002F3.operations\u002F59.get-public-contact",{"title":337,"path":338,"stem":339},"由 API 向 Cloudflare 验证并单次消费挑战","\u002Fzh\u002Freference\u002Foperations\u002Fverify-storefront-challenge","zh\u002F6.reference\u002F3.operations\u002F60.verify-storefront-challenge",{"title":341,"path":342,"stem":343},"创建绑定店铺与精确 Origin 的风险挑战","\u002Fzh\u002Freference\u002Foperations\u002Fcreate-storefront-challenge","zh\u002F6.reference\u002F3.operations\u002F61.create-storefront-challenge",{"title":345,"path":346,"stem":347},"读取店铺公开安全配置","\u002Fzh\u002Freference\u002Foperations\u002Fget-public-store-security-config","zh\u002F6.reference\u002F3.operations\u002F62.get-public-store-security-config",{"title":349,"path":350,"stem":351},"读取公开运行配置","\u002Fzh\u002Freference\u002Foperations\u002Fget-public-runtime-config","zh\u002F6.reference\u002F3.operations\u002F63.get-public-runtime-config",{"title":353,"path":354,"stem":355},"搜索可公开销售商品","\u002Fzh\u002Freference\u002Foperations\u002Fsearch-public-products","zh\u002F6.reference\u002F3.operations\u002F64.search-public-products",{"title":357,"path":358,"stem":359},"读取店铺已发布装修","\u002Fzh\u002Freference\u002Foperations\u002Fget-public-storefront-decoration","zh\u002F6.reference\u002F3.operations\u002F65.get-public-storefront-decoration",{"title":361,"icon":362,"path":363,"stem":364,"children":365,"page":21},"示例","i-lucide-code-xml","\u002Fzh\u002Fexamples","zh\u002F7.examples",[366,370],{"title":367,"path":368,"stem":369},"最小 Nuxt Storefront","\u002Fzh\u002Fexamples\u002Fnuxt-storefront","zh\u002F7.examples\u002F1.nuxt-storefront",{"title":371,"path":372,"stem":373},"Webhook 验签","\u002Fzh\u002Fexamples\u002Fwebhook-verification","zh\u002F7.examples\u002F2.webhook-verification",{"title":375,"icon":376,"path":377,"stem":378,"children":379,"page":21},"版本与支持","i-lucide-life-buoy","\u002Fzh\u002Foperations","zh\u002F8.operations",[380,384],{"title":381,"path":382,"stem":383},"版本、迁移与变更记录","\u002Fzh\u002Foperations\u002Fversions-and-migrations","zh\u002F8.operations\u002F1.versions-and-migrations",{"title":385,"path":386,"stem":387},"支持与安全披露","\u002Fzh\u002Foperations\u002Fsupport-and-security","zh\u002F8.operations\u002F2.support-and-security",{"id":389,"title":18,"body":390,"description":795,"extension":796,"links":797,"meta":798,"navigation":799,"path":19,"seo":800,"stem":20,"__hash__":801},"docs_zh\u002Fzh\u002F1.getting-started\u002F3.enterprise-integration.md",{"type":391,"value":392,"toc":778},"minimark",[393,414,418,421,465,469,474,497,503,507,512,515,520,524,529,540,550,556,560,565,579,582,586,591,594,607,612,616,621,638,672,676,681,684,688,693,696,709,713,718,721,726,730,735,756,760,765,768,771,775],[394,395,396,397,401,402,405,406,409,410,413],"p",{},"这是一条上线决策路径，不是 endpoint 清单。每个阶段都明确区分 ",[398,399,400],"strong",{},"已开放","、",[398,403,404],{},"需要平台开通"," 与 ",[398,407,408],{},"尚未开放","；只有 ",[411,412,83],"a",{"href":89}," 中来自 public-only artifact 的操作才视为已开放。",[415,416,417],"h2",{"id":417},"当前权威阻塞快照",[394,419,420],{},"API public-only artifact 明确给出三类阻塞。它们只解释为什么能力尚未开放，不表示 endpoint 已存在：",[422,423,424,437],"table",{},[425,426,427],"thead",{},[428,429,430,434],"tr",{},[431,432,433],"th",{},"能力",[431,435,436],{},"当前阻塞原因",[438,439,440,449,457],"tbody",{},[428,441,442,446],{},[443,444,445],"td",{},"Installation 写入 API",[443,447,448],{},"仍需 sender-constrained installation credential",[428,450,451,454],{},[443,452,453],{},"订单最终创建",[443,455,456],{},"仍需经过审核的公开订单最终创建契约",[428,458,459,462],{},[443,460,461],{},"生产启用",[443,463,464],{},"外部 readiness 尚未获得证明",[415,466,468],{"id":467},"_1-接入前检查","1. 接入前检查",[394,470,471],{},[398,472,473],{},"状态：已开放（评估指南）；需要平台开通（商业与生产资格）。",[475,476,477,481,484,487,494],"ul",{},[478,479,480],"li",{},"确认场景是匿名目录读取、API Key 服务端读取，还是尚未开放的用户授权\u002F写入能力。",[478,482,483],{},"明确数据控制者、终端用户、店铺\u002F资源边界、市场与数据保留要求。",[478,485,486],{},"指定技术负责人、安全联系人和应急联系人；建立凭据泄漏、限流和未知写入结果的响应流程。",[478,488,489,490,493],{},"只把 ",[411,491,492],{"href":89},"65 项已发布契约操作"," 纳入当前实施范围。",[478,495,496],{},"Hosted 操作、购物车\u002F报价与订单操作只按各自公开契约使用；订单最终创建与支付执行未在 artifact 中声明。",[394,498,499,502],{},[398,500,501],{},"继续条件："," 所需能力均有公开 Reference，或平台书面确认开通路径。否则停止集成，不从控制台流量或混合 OpenAPI 推测接口。",[415,504,506],{"id":505},"_2-申请应用与环境","2. 申请应用与环境",[394,508,509],{},[398,510,511],{},"状态：需要平台开通。",[394,513,514],{},"应用、环境、API Key、installation、生产资格及相关能力由 Ayalink 平台配置或审批；当前没有公开的申请\u002F管理 endpoint。向平台提供应用名称、业务场景、所需市场、回调域名、技术与安全联系人，以及最小权限说明。秘密只通过平台批准的安全交付方式接收。",[394,516,517,519],{},[398,518,501],{}," 已获得目标环境的明确标识、允许能力、凭据交付与轮换说明。文档页面、client ID 或 CORS 成功都不代表生产资格。",[415,521,523],{"id":522},"_3-官方授权域与-pkce","3. 官方授权域与 PKCE",[394,525,526],{},[398,527,528],{},"状态：已开放（OAuth PKCE\u002FDPoP 契约）；需要平台开通（真实应用与官方域配置）。",[394,530,531,532,405,536,539],{},"需要用户授权时，只能把用户送往平台开通材料确认的官方 Ayalink authorization domain，并使用 Authorization Code + PKCE S256、精确 redirect URI、逐次生成并校验的 ",[533,534,535],"code",{},"state",[533,537,538],{},"nonce","。第三方不得反代或仿冒登录页，也不得收集密码\u002FMFA。",[394,541,542,543,545,546,549],{},"当前 public-only artifact 已包含 authorization 描述、token exchange 与撤销操作，并明确要求 PKCE S256 与 DPoP。只按对应 ",[411,544,83],{"href":89}," 和平台开通材料使用；本站不制造 server URL、scope、curl 或成功响应。详见 ",[411,547,548],{"href":48},"OAuth 与账号安全边界","。",[394,551,552,555],{},[398,553,554],{},"停止条件："," 未获得平台确认的官方域、client 配置或精确 redirect URI 时，不实现 OAuth 跳转或 token exchange。",[415,557,559],{"id":558},"_4-token-安全与-bff","4. Token 安全与 BFF",[394,561,562],{},[398,563,564],{},"状态：已开放（安全架构与 DPoP 契约）；需要平台开通（真实 grant）；rotation 等未声明语义不得推测。",[394,566,567,568,401,571,574,575,578],{},"浏览器不得持有 client secret，不得把 access\u002Frefresh token 放入 URL、持久化浏览器存储、日志、分析或错误报告。需要浏览器会话时使用同源 BFF：BFF 仅保存该应用自己的 grant，并向自己的前端签发 ",[533,569,570],{},"HttpOnly",[533,572,573],{},"Secure","、适当 ",[533,576,577],{},"SameSite"," 的应用会话 Cookie；绝不接收或转发 Ayalink 全局 Cookie。",[394,580,581],{},"按平台开通材料确认 token audience、资源边界、有效期、轮换和撤销语义。Artifact 已声明 DPoP；未公开的 refresh-token rotation 与 replay detection 不能当作现有能力。",[415,583,585],{"id":584},"_5-调用已开放-api","5. 调用已开放 API",[394,587,588],{},[398,589,590],{},"状态：已发布契约（65 项 public-only 操作）。",[394,592,593],{},"当前 Reference 包含目录读取、installation identity\u002Freadiness、hosted session 与官方浏览器票据\u002F投影\u002F继续\u002F取消\u002F回跳、API Key 目录、购物车\u002F报价、订单读取\u002F取消\u002F售后、Webhook 与 OAuth PKCE\u002FDPoP。按每个 operation 页面使用真实 method、path、认证、参数与响应 schema；不要从本指南复制或猜测 Base URL，运行环境地址以平台开通材料为准。",[475,595,596,601,604],{},[478,597,598],{},[411,599,600],{"href":89},"浏览已开放 API 目录",[478,602,603],{},"API Key 只放服务端批准的 header，禁止进入浏览器 bundle 或 URL。",[478,605,606],{},"请求只发送 Reference 声明的参数；没有 schema 的示例不自行补造。",[394,608,609,611],{},[398,610,501],{}," 目标 operation 存在于当前目录，且所需认证已开通。订单最终创建、支付执行及未进入 artifact 的 installation 写入仍不可用。",[415,613,615],{"id":614},"_6-分页错误requestid-与-429","6. 分页、错误、requestId 与 429",[394,617,618],{},[398,619,620],{},"状态：已开放（以每个 operation 的公开契约为准）。",[394,622,623,624,401,627,401,630,633,634,637],{},"分页参数、游标与响应结构只按对应 operation 页面声明实现；若 spec 未声明，则不能假设 ",[533,625,626],{},"page",[533,628,629],{},"limit",[533,631,632],{},"cursor"," 或总数。按 HTTP 状态与稳定错误码分支处理，不解析自然语言文案。保存响应中实际提供的 ",[533,635,636],{},"requestId"," 或关联编号，用于支持与对账；具体字段\u002Fheader 未声明时以平台材料为准，不自行创造。",[394,639,640,641,644,645,648,649,401,652,401,655,401,658,401,661,401,664,405,666,669,670,549],{},"收到 ",[533,642,643],{},"429"," 时，仅当响应实际提供 ",[533,646,647],{},"Retry-After"," 才按其等待；否则使用有界指数退避与抖动，并限制重试预算。",[533,650,651],{},"401",[533,653,654],{},"403",[533,656,657],{},"404",[533,659,660],{},"409\u002F412",[533,662,663],{},"422",[533,665,643],{},[533,667,668],{},"5xx"," 的恢复边界见",[411,671,92],{"href":93},[415,673,675],{"id":674},"_7-幂等与未知结果","7. 幂等与未知结果",[394,677,678],{},[398,679,680],{},"状态：已开放读取与写入操作均以各 operation 的幂等声明为准。",[394,682,683],{},"读取操作可进行有界安全重试，但仍须遵守限流。购物车、订单、Webhook、OAuth 与 hosted 变更只能遵循对应 operation 契约明确声明的幂等事实；spec 未声明时，超时或断连结果必须视为未知，不能盲目重放。",[415,685,687],{"id":686},"_8-webhook-签名重放与重试","8. Webhook 签名、重放与重试",[394,689,690],{},[398,691,692],{},"状态：已开放（订阅管理、投递查询\u002F重放契约）；需要平台开通（installation 凭据与签名材料）。",[394,694,695],{},"接收方必须基于原始请求体、平台声明的 timestamp 与签名材料完成 HMAC 校验，使用常量时间比较、时间窗校验和 event ID 原子去重；签名通过前不解析 JSON。轮换时只接受平台明确允许的当前\u002F前一 key 窗口。",[394,697,698,699,701,702,705,706,549],{},"发送方重试次数、时间窗、header 名称和 dead-letter 行为以平台开通材料为准。本地处理应有界退避、尊重实际收到的 ",[533,700,647],{},"、保留原 event ID，并让业务效果幂等。详见 ",[411,703,704],{"href":72},"Webhook 指南"," 与",[411,707,708],{"href":372},"验签示例",[415,710,712],{"id":711},"_9-测试与验收","9. 测试与验收",[394,714,715],{},[398,716,717],{},"状态：已开放（静态契约测试）；需要平台开通（真实环境联调）。",[394,719,720],{},"至少覆盖：成功读取、空结果、无效\u002F撤销凭据、权限拒绝、资源不存在、校验错误、429、5xx\u002F断连、分页边界、日志脱敏；若接入 Webhook，再覆盖错误签名、过期 timestamp、重复 event、乱序、重试和 secret 轮换。测试不得使用生产 secret 或真实个人数据。",[394,722,723,725],{},[398,724,501],{}," 合同测试使用当前 artifact，真实环境联调记录 requestId、时间、operationId 与脱敏结果；所有未知结果均能对账或安全停止。",[415,727,729],{"id":728},"_10-生产上线检查","10. 生产上线检查",[394,731,732],{},[398,733,734],{},"状态：需要平台开通；外部 readiness 尚未获得证明。",[475,736,737,740,743,746,753],{},[478,738,739],{},"平台已确认生产应用\u002F环境、允许能力、市场和凭据状态。",[478,741,742],{},"Base URL、authorization domain、redirect URI、audience、scope 与 Webhook 参数均来自平台材料，而非文档推测。",[478,744,745],{},"凭据进入 secret manager；日志、监控、告警、轮换、限流预算和应急联系人已就绪。",[478,747,748,749,752],{},"生产前重新核对当前 ",[411,750,751],{"href":89},"API Reference"," 的来源版本与变更说明。",[478,754,755],{},"灰度、回滚和停止条件有负责人；不得把测试环境成功当作生产批准。",[415,757,759],{"id":758},"_11-撤销与应急","11. 撤销与应急",[394,761,762],{},[398,763,764],{},"状态：需要平台开通（撤销入口与支持）；安全响应流程已开放。",[394,766,767],{},"发现 token\u002FAPI Key\u002FWebhook secret 泄漏、异常调用、仿冒授权页或越权迹象时：立即停止相关流量，隔离泄漏来源，通过平台批准入口撤销或轮换受影响凭据，保留 requestId、operationId、时间窗和脱敏日志，并联系官方安全渠道。不要把 token、Cookie 或完整 payload 发进工单。",[394,769,770],{},"重新上线前确认旧凭据确已失效、消费者已更新、重复事件\u002F未知写入已对账、根因已修复，并重新执行生产检查。OAuth 撤销操作已进入公开 Reference；其他凭据或 installation 的撤销入口仍只按平台开通材料使用。不得猜测 URL 或把删除本地 Cookie 当作撤销 grant。",[415,772,774],{"id":773},"reference-自动扩充原则","Reference 自动扩充原则",[394,776,777],{},"后续 API public-only artifact 到达时，importer 会校验来源 commit、hash、operationId、安全方案和内部边界，再自动生成新增双语 endpoint 页面。本指南只据真实 artifact 更新开放状态；不会等待“全量接口”，也不会手写不存在的 endpoint、scope 或响应。",{"title":779,"searchDepth":780,"depth":780,"links":781},"",2,[782,783,784,785,786,787,788,789,790,791,792,793,794],{"id":417,"depth":780,"text":417},{"id":467,"depth":780,"text":468},{"id":505,"depth":780,"text":506},{"id":522,"depth":780,"text":523},{"id":558,"depth":780,"text":559},{"id":584,"depth":780,"text":585},{"id":614,"depth":780,"text":615},{"id":674,"depth":780,"text":675},{"id":686,"depth":780,"text":687},{"id":711,"depth":780,"text":712},{"id":728,"depth":780,"text":729},{"id":758,"depth":780,"text":759},{"id":773,"depth":780,"text":774},"从接入评估、平台开通和安全授权，到 API、Webhook、测试、生产上线与应急撤销的完整路径。","md",null,{},true,{"title":18,"description":795},"Rjsa1yt3ZDy08sqqO7whqSH3kXHIRcHLSbJ5e8WotZg",[803,805],{"title":14,"path":15,"stem":16,"description":804,"children":-1},"理解公开文档、平台、店铺、安装、用户与 Provider 的信任边界。",{"title":29,"path":30,"stem":31,"description":806,"children":-1},"在保持 Ayalink 身份、页面准入、缓存和挑战边界的前提下构建独立商城。",1786284815891]