Requirements
- Backend service capable of HTTPS POST calls
- Access to site-level API key from dashboard
- Access to
site_idandscan_session_idfrom your QR journey/session flow - Stable event IDs for retry-safe delivery
Security Requirements
- Never expose
X-API-Keyin frontend/browser code - Store API key in environment secret manager
- Rotate/revoke keys through dashboard API tab