Documentation
HTTP API
Base URL: https://ovyero.visnryentertainment.com. Requests and responses are JSON.
Authentication
Send your API key as a bearer token: Authorization: Bearer sk-ovyero-…. Keys issued earlier that start with sk-aios- remain valid. The key is shown once, when it is issued.
Endpoints
| Request | What it does |
|---|---|
POST /api/v1/govern/file | Govern one file. Body: {"filename":"src/app.js","content":"…"}. Returns verdict (PASS / WARN / GATE), passed, findings, violations, coverage, critics_run, artifactSha256, audit_id and domainsActive (how many risk domains the server has loaded). |
POST /api/v1/govern/files-bulk | Govern up to 100 files. Body: {"files":[{"filename":"…","content":"…"}]}. Returns {"verdicts":[…],"count":N}. |
GET /api/v1/account | Your tenantId, tier and which paid features are on. |
GET /api/v1/quota | Request counts for today and this month. |
GET /api/v1/audit/export | Your audit ledger: {"lines":[…],"count":N,"head":"…"}. Add ?format=bundle for the signed evidence bundle. |
GET /api/v1/export/verdicts.csv | Verdicts as CSV. |
GET /api/v1/siem/events | Normalized events for a SIEM collector. See SIEM. |
GET /api/v1/tiers | The plan list. No key needed. |
Example
curl -sS -X POST https://ovyero.visnryentertainment.com/api/v1/govern/file \
-H "Authorization: Bearer $OVYERO_API_KEY" \
-H "Content-Type: application/json" \
-d '{"filename":"src/app.js","content":"const x = 1;"}'Errors and limits
401: the key is missing or not recognised.403withKEY_REVOKED: the key was revoked.429: rate limited. The govern endpoints allow 600 requests a minute by default.- Error bodies carry an
errorcode and usually amessage. - File content is analysed and not stored; the ledger keeps metadata and a SHA-256 of the content.
- Routes under
/dashboard/and/api/v1/forensics/are for signed-in people in a browser, not for API keys.
Problems: Troubleshooting.