Proplix Secure API Gateway · Version 1.0.0

Client Portal API profiles and one-time tokens

Create, secure, review and revoke one token per external portal with sections, domain, server IP and rate limits.

27 code-backed guidesExact navigationInterlinked workflows

Guides in this workflow

Follow the guide that matches the exact action, filter, menu change or issue.

Open the Client Portal API profile form

Use the visible Main Flow card.

Administrator

Complete API name

Required administrator label, for example an external client portal name.

Administrator

Complete Profile key

Enter a short internal identifier such as abc_estate_portal.

Administrator

Complete Allowed domain

Record the external portal domain for reference/audit.

Administrator

Complete Allowed server IPs

Optionally restrict calls to backend server IP addresses.

Administrator

Set Rate limit per minute

Choose 10–1000; the visible default is 120.

Administrator

Select allowed portal sections

Only checked sections are encoded into the portal profile.

Administrator

Create the Portal API

Submit the form after selecting security and data scope.

Administrator

Copy the one-time token

The newly generated private token is shown once in flash data and cannot be displayed again.

Administrator

Store the token server-side

Never expose the master token in browser JavaScript.

Administrator

Review portal profiles

The page lists existing portal profiles and enabled modules.

Administrator

Revoke a portal profile

Use Revoke; status becomes revoked and authentication stops.

Administrator

Understand usage metadata

Profile records can retain last-used information when authenticated.

Administrator

Understand one-way portal token storage

The token is stored as a SHA-256 hash rather than recoverable plaintext.

Administrator

Review detected enabled modules

Use the enabled-module display to understand available automatic data adapters.

Administrator

Allow portal section: Client profile

Core customer/account profile.

Administrator

Allow portal section: Contacts

Active contacts related to the customer.

Administrator

Allow portal section: Invoices

Customer invoices permitted by portal rules.

Administrator

Allow portal section: Invoice payments

Payments related to the customer invoices.

Administrator

Allow portal section: Estimates

Customer estimates.

Administrator

Allow portal section: Proposals

Customer proposals.

Administrator

Allow portal section: Projects

Customer projects.

Administrator

Allow portal section: Tickets

Customer support tickets.

Administrator

Allow portal section: Contracts

Customer contracts.

Administrator

Allow portal section: Customer files

Authorised customer files.

Administrator

Allow portal section: Subscriptions

Customer subscriptions.

Administrator

Allow portal section: Automatic enabled module data

Data from detected supported modules.

Administrator