API Terms & Developer Policy — postal.ID
These terms govern use of postal.ID APIs.
1. API keys and security
- API keys are confidential credentials.
- Customer must rotate compromised keys and notify postal.ID.
- Use IP allowlisting where available.
2. Rate limits and fair use
We may impose rate limits to protect service availability. Excessive use or abuse may result in throttling or suspension.
3. Webhooks
Customer is responsible for verifying webhook signatures and securing webhook endpoints.
4. Prohibited use
No scraping, enumeration, or unauthorized security testing without written permission.
5. Changes and deprecation
We will provide reasonable notice for breaking changes and deprecations.
6. Logging
API requests may be logged for security and troubleshooting, subject to retention.