A

alloy.com

Alloy provides identity risk decisioning and onboarding infrastructure for financial institutions and fintechs. Its platform supports entity creation, evaluations, event-driven monitoring, and case-related workflows.

1 integration · REST

Alloy exposes one documented HTTP API for onboarding, decisioning, entities, events, and related operations; it accepts either HTTP Basic auth with an Alloy-issued token/secret pair or an OAuth 2.0 client-credentials bearer token derived from that same pair.

discovered 2mo ago
REST · OpenAPI1
Credentials
Alloy account-level API token and secretbasicGet credentials ↗

In the Alloy dashboard, go to Roles > Settings > API Keys and create a new API key. The docs say your role needs permissions to view API keys and create new API keys. Alloy issues a token and one or more secret values for that key; use them directly for HTTP Basic auth or as the client credentials for OAuth 2.0 client-credentials. See Account-Level API Keys and Authentication Guide.

Alloy OAuth 2.0 bearer tokenoauth2_ccSet up OAuth ↗

First create an Alloy API token and secret from Account-Level API Keys. Then exchange them with the client-credentials flow by POSTing to https://sandbox.alloy.co/v1/oauth/bearer with grant_type=client_credentials and HTTP Basic auth using token:secret. The returned bearer token is valid for one hour and is then sent as Authorization: Bearer <bearer_token>. See Authentication Guide.

conventions · 1/7 published

Publish these signals → /publishing