{"activeVersionTag":"latest","latestAvailableVersionTag":"latest","collection":{"info":{"_postman_id":"8ae97b50-1be9-41aa-a2b7-2c67eed643e1","name":"Sora Merch API","description":"The Sora Merch API provides programmatic access to the product catalog and to order management.\n\n## Authentication\n\nEvery request authenticates with an `Authorization: Bearer {key_id}.{secret}` header. The secret is  \nshown once, when the key is created in the client portal. Keys carry a permission of `read`,  \n`write` or `read_write`, and may optionally be restricted to an IP allowlist configured in the  \nclient portal.\n\n## Errors\n\nA controlled error returns `{\"message\": \"...\", \"code\": \"CA-xxxx\"}`. A request-validation failure  \nreturns `{\"message\": \"...\", \"errors\": {\"field\": [\"...\"]}}`, with no `code`.\n\n| Code | HTTP | Meaning |\n| --- | --- | --- |\n| CA-1000 | 500 | Unexpected server error. |\n| CA-1001 | 401 | The `Authorization` header is missing. |\n| CA-1002 | 401 | The `Authorization` header is present but empty. |\n| CA-1003 | 401 | The API key is malformed, unknown or revoked. |\n| CA-1004 | 403 | The key's permission (`read`/`write`) does not cover the request. |\n| CA-1005 | 404 | The requested resource was not found. |\n| CA-1006 | 404 | The product was not found or is not available to the account. |\n| CA-1007 | 404 | No account was found for this key. |\n| CA-1008 | 422 | The product exists but is not currently orderable. |\n| CA-1009 | 500 | Order creation failed. |\n| CA-1010 | 409 | `order_number` and `additional_order_number` were already used together. |\n| CA-1011 | 422 | `country` is required on the request. |\n| CA-1012 | 404 | The given country is not accessible to the account. |\n| CA-1014 | 409 | The order's current status does not allow updating. |\n| CA-1015 | 409 | The order's current status does not allow cancellation. |\n| CA-1016 | 409 | Cancellation could not be processed. |\n| CA-1017 | 422 | The recipient address could not be verified. |\n| CA-1018 | 409 | Pricing is not available for this product on the account. |\n| CA-1020 | 409 | The `price_id` does not match the product's current price. |\n| CA-1021 | 422 | The country is not currently supported for order delivery. |\n| CA-1022 | 429 | The rate limit was exceeded. |\n| CA-1023 | 405 | The HTTP method is not supported for this endpoint. |\n| CA-1024 | 403 | The requesting IP address is not on the key's configured allowlist. |\n\n## Rate limits\n\n60 requests per minute per API key. Exceeding it returns `429 CA-1022` with a `Retry-After` header.\n\n## Pagination\n\nList endpoints return a paginated envelope (`data`, `links`, `meta`) and accept `per_page`  \n(1-100, default 15) and `page` query parameters.\n\n## Order status\n\n| Status | Meaning |\n| --- | --- |\n| `processing` | The order has been received and is being reviewed before it is accepted. |\n| `on_hold` | The order requires attention before it can proceed; see `hold_reason` for the cause. |\n| `accepted` | The order has been accepted and can still be cancelled. |\n| `ordered` | The order has been placed with the supplier. It can no longer be cancelled or updated. |\n| `shipped` | The order has been dispatched. `tracking` carries the carrier and tracking number once recorded. |\n| `returned` | The order was delivered and has since been returned. |\n| `replaced` | The order was replaced with a new order. |\n| `cancelled` | The order was cancelled and will not be fulfilled. |\n| `invoiced` | The final status of a fulfilled order. The order has been invoiced. |\n\nOrders progress from `processing`/`on_hold` through `accepted`, `ordered` and `shipped` to  \n`invoiced`, with `cancelled`, `returned` or `replaced` reachable along the way.","schema":"https://schema.getpostman.com/json/collection/v2.0.0/collection.json","isPublicCollection":false,"owner":"30983649","team":5972657,"collectionId":"8ae97b50-1be9-41aa-a2b7-2c67eed643e1","publishedId":"2sBYB4Mmy6","public":true,"publicUrl":"https://documenter-api.postman.tech/view/30983649/2sBYB4Mmy6","privateUrl":"https://go.postman.co/documentation/30983649-8ae97b50-1be9-41aa-a2b7-2c67eed643e1","customColor":{"top-bar":"FFFFFF","right-sidebar":"303030","highlight":"FF6C37"},"documentationLayout":"classic-double-column","customisation":{"metaTags":[{"name":"description","value":""},{"name":"title","value":""}],"appearance":{"default":"light","themes":[{"name":"dark","logo":null,"colors":{"top-bar":"212121","right-sidebar":"303030","highlight":"FF6C37"}},{"name":"light","logo":null,"colors":{"top-bar":"FFFFFF","right-sidebar":"303030","highlight":"FF6C37"}}]}},"version":"8.12.7","publishDate":"2026-09-30T10:03:12.000Z","activeVersionTag":"latest","documentationTheme":"light","metaTags":{"title":"","description":""},"logos":{"logoLight":null,"logoDark":null}},"statusCode":200},"environments":[],"user":{"authenticated":false,"permissions":{"publish":false}},"run":{"button":{"js":"https://run.pstmn.io/button.js","css":"https://run.pstmn.io/button.css"}},"web":"https://www.getpostman.com/","team":{"logo":"https://res.cloudinary.com/postman/image/upload/t_team_logo_pubdoc/v1/team/b3718bd2987602a4fec3859e1d0da00be7f50ea3c67608be71658d785b360e75","favicon":"https://res.cloudinary.com/postman/image/upload/v1756748631/team/070c04c829cf1f6d94920a6af1127e25.ico"},"isEnvFetchError":false,"languages":"[{\"key\":\"csharp\",\"label\":\"C#\",\"variant\":\"HttpClient\"},{\"key\":\"csharp\",\"label\":\"C#\",\"variant\":\"RestSharp\"},{\"key\":\"curl\",\"label\":\"cURL\",\"variant\":\"cURL\"},{\"key\":\"dart\",\"label\":\"Dart\",\"variant\":\"http\"},{\"key\":\"go\",\"label\":\"Go\",\"variant\":\"Native\"},{\"key\":\"http\",\"label\":\"HTTP\",\"variant\":\"HTTP\"},{\"key\":\"java\",\"label\":\"Java\",\"variant\":\"OkHttp\"},{\"key\":\"java\",\"label\":\"Java\",\"variant\":\"Unirest\"},{\"key\":\"javascript\",\"label\":\"JavaScript\",\"variant\":\"Fetch\"},{\"key\":\"javascript\",\"label\":\"JavaScript\",\"variant\":\"jQuery\"},{\"key\":\"javascript\",\"label\":\"JavaScript\",\"variant\":\"XHR\"},{\"key\":\"c\",\"label\":\"C\",\"variant\":\"libcurl\"},{\"key\":\"nodejs\",\"label\":\"NodeJs\",\"variant\":\"Axios\"},{\"key\":\"nodejs\",\"label\":\"NodeJs\",\"variant\":\"Native\"},{\"key\":\"nodejs\",\"label\":\"NodeJs\",\"variant\":\"Request\"},{\"key\":\"nodejs\",\"label\":\"NodeJs\",\"variant\":\"Unirest\"},{\"key\":\"objective-c\",\"label\":\"Objective-C\",\"variant\":\"NSURLSession\"},{\"key\":\"ocaml\",\"label\":\"OCaml\",\"variant\":\"Cohttp\"},{\"key\":\"php\",\"label\":\"PHP\",\"variant\":\"cURL\"},{\"key\":\"php\",\"label\":\"PHP\",\"variant\":\"Guzzle\"},{\"key\":\"php\",\"label\":\"PHP\",\"variant\":\"HTTP_Request2\"},{\"key\":\"php\",\"label\":\"PHP\",\"variant\":\"pecl_http\"},{\"key\":\"powershell\",\"label\":\"PowerShell\",\"variant\":\"RestMethod\"},{\"key\":\"python\",\"label\":\"Python\",\"variant\":\"http.client\"},{\"key\":\"python\",\"label\":\"Python\",\"variant\":\"Requests\"},{\"key\":\"r\",\"label\":\"R\",\"variant\":\"httr\"},{\"key\":\"r\",\"label\":\"R\",\"variant\":\"RCurl\"},{\"key\":\"ruby\",\"label\":\"Ruby\",\"variant\":\"Net::HTTP\"},{\"key\":\"shell\",\"label\":\"Shell\",\"variant\":\"Httpie\"},{\"key\":\"shell\",\"label\":\"Shell\",\"variant\":\"wget\"},{\"key\":\"swift\",\"label\":\"Swift\",\"variant\":\"URLSession\"}]","languageSettings":[{"key":"csharp","label":"C#","variant":"HttpClient"},{"key":"csharp","label":"C#","variant":"RestSharp"},{"key":"curl","label":"cURL","variant":"cURL"},{"key":"dart","label":"Dart","variant":"http"},{"key":"go","label":"Go","variant":"Native"},{"key":"http","label":"HTTP","variant":"HTTP"},{"key":"java","label":"Java","variant":"OkHttp"},{"key":"java","label":"Java","variant":"Unirest"},{"key":"javascript","label":"JavaScript","variant":"Fetch"},{"key":"javascript","label":"JavaScript","variant":"jQuery"},{"key":"javascript","label":"JavaScript","variant":"XHR"},{"key":"c","label":"C","variant":"libcurl"},{"key":"nodejs","label":"NodeJs","variant":"Axios"},{"key":"nodejs","label":"NodeJs","variant":"Native"},{"key":"nodejs","label":"NodeJs","variant":"Request"},{"key":"nodejs","label":"NodeJs","variant":"Unirest"},{"key":"objective-c","label":"Objective-C","variant":"NSURLSession"},{"key":"ocaml","label":"OCaml","variant":"Cohttp"},{"key":"php","label":"PHP","variant":"cURL"},{"key":"php","label":"PHP","variant":"Guzzle"},{"key":"php","label":"PHP","variant":"HTTP_Request2"},{"key":"php","label":"PHP","variant":"pecl_http"},{"key":"powershell","label":"PowerShell","variant":"RestMethod"},{"key":"python","label":"Python","variant":"http.client"},{"key":"python","label":"Python","variant":"Requests"},{"key":"r","label":"R","variant":"httr"},{"key":"r","label":"R","variant":"RCurl"},{"key":"ruby","label":"Ruby","variant":"Net::HTTP"},{"key":"shell","label":"Shell","variant":"Httpie"},{"key":"shell","label":"Shell","variant":"wget"},{"key":"swift","label":"Swift","variant":"URLSession"}],"languageOptions":[{"label":"C# - HttpClient","value":"csharp - HttpClient - C#"},{"label":"C# - RestSharp","value":"csharp - RestSharp - C#"},{"label":"cURL - cURL","value":"curl - cURL - cURL"},{"label":"Dart - http","value":"dart - http - Dart"},{"label":"Go - Native","value":"go - Native - Go"},{"label":"HTTP - HTTP","value":"http - HTTP - HTTP"},{"label":"Java - OkHttp","value":"java - OkHttp - Java"},{"label":"Java - Unirest","value":"java - Unirest - Java"},{"label":"JavaScript - Fetch","value":"javascript - Fetch - JavaScript"},{"label":"JavaScript - jQuery","value":"javascript - jQuery - JavaScript"},{"label":"JavaScript - XHR","value":"javascript - XHR - JavaScript"},{"label":"C - libcurl","value":"c - libcurl - C"},{"label":"NodeJs - Axios","value":"nodejs - Axios - NodeJs"},{"label":"NodeJs - Native","value":"nodejs - Native - NodeJs"},{"label":"NodeJs - Request","value":"nodejs - Request - NodeJs"},{"label":"NodeJs - Unirest","value":"nodejs - Unirest - NodeJs"},{"label":"Objective-C - NSURLSession","value":"objective-c - NSURLSession - Objective-C"},{"label":"OCaml - Cohttp","value":"ocaml - Cohttp - OCaml"},{"label":"PHP - cURL","value":"php - cURL - PHP"},{"label":"PHP - Guzzle","value":"php - Guzzle - PHP"},{"label":"PHP - HTTP_Request2","value":"php - HTTP_Request2 - PHP"},{"label":"PHP - pecl_http","value":"php - pecl_http - PHP"},{"label":"PowerShell - RestMethod","value":"powershell - RestMethod - PowerShell"},{"label":"Python - http.client","value":"python - http.client - Python"},{"label":"Python - Requests","value":"python - Requests - Python"},{"label":"R - httr","value":"r - httr - R"},{"label":"R - RCurl","value":"r - RCurl - R"},{"label":"Ruby - Net::HTTP","value":"ruby - Net::HTTP - Ruby"},{"label":"Shell - Httpie","value":"shell - Httpie - Shell"},{"label":"Shell - wget","value":"shell - wget - Shell"},{"label":"Swift - URLSession","value":"swift - URLSession - Swift"}],"layoutOptions":[{"value":"classic-single-column","label":"Single Column"},{"value":"classic-double-column","label":"Double Column"}],"versionOptions":[],"environmentOptions":[{"value":"0","label":"No Environment"}],"canonicalUrl":"https://documenter.gw.postman.com/view/metadata/2sBYB4Mmy6"}