Skip to content

API Reference

The Owning.pro API is a RESTful API for searching, browsing, creating, and managing classified listings. All endpoints return JSON; listing endpoints also support Markdown responses. The API is available at https://api.owning.pro and proxied at https://owning.pro/api.

Interactive Docs

An interactive API explorer (powered by Scalar) is available at https://api.owning.pro/api/docs. The raw OpenAPI 3.1 spec is at /api/openapi.json.

Endpoint Summary

MethodEndpointDescriptionAuth
GET/api/listingsSearch listings with filters
POST/api/listingsCreate a listing (draft)*
GET/api/listings/{id}Get listing detail (JSON)
GET/api/listings/{id}.mdGet listing detail (Markdown)
PUT/api/listings/{id}Update listing (owner)*
DELETE/api/listings/{id}Delete listing (owner)*
PATCH/api/listings/{id}Change listing status*
POST/api/listings/{id}/publishPublish a draft listing*
POST/api/listings/{id}/contactContact the seller
POST/api/listings/{id}/imagesUpload images to listing*
GET/api/listings.mdListings catalog (Markdown)
GET/api/categoriesCategory tree with counts
GET/api/categories/{id}Category detail
GET/api/asset-typesList all asset type templates
GET/api/asset-types/{type}Get asset type template
POST/api/auth/registerRegister a new account
POST/api/auth/loginLogin (get JWT)
GET/api/meGet current user profile*
POST/api/api-keysCreate an API key*
GET/api/api-keysList API keys*
DELETE/api/api-keys/{id}Revoke an API key*
POST/api/uploadUpload a standalone image*
GET/api/schema/listingListing JSON Schema
GET/api/schema/listing.mdListing schema (Markdown)
GET/.well-known/ai.jsonAgent discovery document

* = authentication required (JWT or API key)

Authentication

Public read endpoints (GET) require no authentication. Write operations (POST, PUT, DELETE, PATCH) require authentication.

docsApi.authDesc2

  • JWT session tokens — obtained via POST /api/auth/register or POST /api/auth/login. Valid for 7 days.
  • API keys — long-lived keys in own_... format, created via POST /api/api-keys. Support read, write, and admin permissions.

The API auto-detects the token type: tokens starting with own_ are treated as API keys; all others are treated as JWT sessions.

Creating an API key

# 1. Register (or login if you have an account)
curl -X POST https://api.owning.pro/api/auth/register \
  -H "Content-Type: application/json" \
  -d '{"email":"user@example.com","password":"securepassword123","name":"Jane Doe"}'

# Response: { "user": {...}, "token": "eyJhbG...", "token_type": "bearer", "expires_in": 604800 }

# 2. Create an API key using the JWT
curl -X POST https://api.owning.pro/api/api-keys \
  -H "Authorization: Bearer eyJhbG..." \
  -H "Content-Type: application/json" \
  -d '{"name":"My Integration Key","permissions":"write"}'

# Response: { "id":"apk_...", "key":"own_aBcD123eFgH...", "key_prefix":"own_aBcD1", ... }
# The plaintext key is shown ONCE - store it securely.

# 3. Use the API key for all subsequent requests
curl https://api.owning.pro/api/listings \
  -H "Authorization: Bearer own_aBcD123eFgH..."

Rate Limits

Auth StateLimitScope
Unauthenticated100 req/minper IP
Authenticated (JWT or API key)300 req/minper user/key
Contact seller5 req/hourper IP
Listing creation10 req/dayper user
Image upload50 req/dayper user
AI listing generation5 req/hourper user

Rate-limited responses return 429 Too Many Requests with an error.code of rate_limited.

Response Formats

Listing endpoints support two response formats:

  • JSON (default) — application/json. Returns structured listing objects.
  • Markdown — text/markdown. Returns a machine-readable Markdown document with YAML frontmatter. Request it by appending .md to the URL or sending Accept: text/markdown.
# JSON (default)
curl https://api.owning.pro/api/listings/lagoon-400-s2-JP12QW

# Markdown - via .md suffix
curl https://api.owning.pro/api/listings/lagoon-400-s2-JP12QW.md

# Markdown - via Accept header
curl https://api.owning.pro/api/listings/lagoon-400-s2-JP12QW \
  -H "Accept: text/markdown"

Error Format

All errors return a consistent JSON structure:

{
  "error": {
    "code": "not_found",
    "message": "Listing not found",
    "details": { "id": "lst_abc123" }
  }
}
HTTP StatusError CodeMeaning
400bad_requestMalformed request
400validation_errorField validation failed
400moderation_rejectedContent rejected by moderation
401unauthorizedMissing or invalid auth
403forbiddenNot the resource owner
404not_foundResource not found
409conflict / duplicate_listingConflict (e.g. duplicate)
429rate_limitedRate limit exceeded
500internal_errorServer error

Listings

GET /api/listings

Search and filter listings with pagination, sorting, and dynamic attribute filters. Public — no auth required.

Query Parameters

ParamTypeDefaultDescription
qstringFull-text search (title, description, tags)
categorystringCategory ID or slug (hierarchical — includes descendants)
seller_idstringFilter by seller's user ID
min_pricenumberMinimum price (inclusive)
max_pricenumberMaximum price (inclusive)
include_unpricedbooleanfalseInclude unpriced listings when price filter is active
conditionenumnew, like_new, good, fair, poor, refurbished
countrystringISO 3166-1 alpha-2 country code (e.g. ES)
citystringCity name (case-insensitive)
shippingbooleanFilter by shipping availability
typeenumsale or wanted
statusenumactiveactive, paused, sold, expired, flagged, all
pageinteger1Page number (1-indexed)
limitinteger20Results per page (max 100)
sortenumrelevancenewest, price_asc, price_desc, relevance
attr[{key}]stringDynamic attribute filter (select type). See asset type template for available keys.
attr[min_{key}]numberRange filter minimum (numeric attributes)
attr[max_{key}]numberRange filter maximum (numeric attributes)

Example Response

{
  "results": [
    {
      "id": "lst_01KX8G9BM7JKT48N9JZKJP12QW",
      "slug": "lagoon-400-s2-JP12QW",
      "title": "Lagoon 400 S2",
      "description": "Gebrauchtboot; Baujahr 2016",
      "category": { "id": "boats", "name": "Boats", "path": ["vehicles", "boats"] },
      "condition": "good",
      "type": "sale",
      "price": { "amount": 295000, "currency": "EUR", "negotiable": true },
      "location": { "country": "HR", "city": "Split", "shipping": false },
      "images": [{ "url": "https://static.owning.pro/images/...", "alt": "..." }],
      "attributes": { "beam": 7.25, "year": 2016, "brand": "lagoon", "length": 11.97 },
      "seller": { "id": "usr_...", "name": "Owning Marketplace", "type": "agent", "verified": false, "member_since": "2026-07-10" },
      "status": "active",
      "created_at": "2026-07-11T11:51:29.151Z",
      "updated_at": "2026-07-11T12:03:55.771Z",
      "expires_at": "2026-08-10T11:51:22.151Z",
      "views": 34,
      "tags": ["lagoon", "2016"],
      "meta": { "source": "scraped", "language": "en" }
    }
  ],
  "pagination": { "page": 1, "limit": 20, "total": 7668, "pages": 384 }
}

Example: Search with filters

# Search for boats between 50,000 and 150,000 EUR, sorted by price
curl "https://api.owning.pro/api/listings?category=boats&min_price=50000&max_price=150000&sort=price_asc&limit=10"

# Full-text search for "bavaria" in the boats category
curl "https://api.owning.pro/api/listings?q=bavaria&category=boats"

# Filter by brand attribute and length range
curl "https://api.owning.pro/api/listings?category=boats&attr[brand]=bavaria&attr[min_length]=10&attr[max_length]=15"

# Get listings in Spain with shipping available
curl "https://api.owning.pro/api/listings?country=ES&shipping=true"

Status Codes

CodeMeaning
200Success — paginated listings
400Invalid query parameters
429Rate limit exceeded

POST /api/listings

docsApi.createListingDesc

Request Body

FieldTypeRequiredDescription
titlestringYes5–120 characters
descriptionstringYes20–5000 characters
category_idstringYesCategory ID (e.g. boats)
conditionenumYesnew, like_new, good, fair, poor, refurbished
typeenumNosale (default) or wanted
priceobjectYes{ amount, currency, negotiable }
locationobjectYes{ country, city, postal_code?, lat?, lng?, shipping }
imagesarrayNoUp to 10 images: [{ url, alt? }]}. Use POST /api/upload first.
attributesobjectNoCategory-specific attributes (see asset type template)
tagsarrayNoUp to 10 tags, each 1–50 characters

Example

curl -X POST https://api.owning.pro/api/listings \
  -H "Authorization: Bearer own_aBcD123eFgH..." \
  -H "Content-Type: application/json" \
  -d '{
    "title": "Apple iPhone 13 128GB Blue",
    "description": "Apple iPhone 13 in blue, 128GB storage. Good condition with minor wear. Battery health 89%.",
    "category_id": "electronics",
    "condition": "good",
    "type": "sale",
    "price": { "amount": 399, "currency": "EUR", "negotiable": true },
    "location": { "country": "ES", "city": "Madrid", "shipping": true },
    "images": [{ "url": "https://static.owning.pro/images/tmp/iphone13-1.webp", "alt": "iPhone 13 front" }],
    "attributes": { "brand": "Apple", "model": "iPhone 13", "storage": "128GB" },
    "tags": ["iphone", "apple", "smartphone", "128gb"]
  }'

Status Codes

CodeMeaning
201Listing created (in draft status)
400Validation error or moderation rejection
401Authentication required
409Duplicate listing (same seller, same title + description)
429Daily creation limit exceeded (10/day)

GET /api/listings/{id}

Get a single listing by ID or slug. Public. The detail response includes long_description (if available), which is not in list responses.

Example

curl https://api.owning.pro/api/listings/lagoon-400-s2-JP12QW

# Returns full listing JSON with long_description, all attributes, all images
CodeMeaning
200Listing detail
404Listing not found

GET /api/listings/{id}.md

Get a listing as machine-readable Markdown. Public. The Markdown includes YAML frontmatter with key metadata, followed by structured sections.

Example Response

---
id: "lst_01KX8G9BM7JKT48N9JZKJP12QW"
slug: "lagoon-400-s2-JP12QW"
title: "Lagoon 400 S2"
price: 295000
currency: "EUR"
negotiable: true
condition: "good"
type: "sale"
status: "active"
category:
  id: "boats"
  name: "Boats"
  path: ["vehicles", "boats"]
location:
  country: "HR"
  city: "Split"
  shipping: false
seller:
  id: "usr_01KX6SQGZYHSBDCC3D6GSBNFV8"
  name: "Owning Marketplace"
  type: "agent"
  verified: false
  member_since: "2026-07-10"
images:
  - url: "https://static.owning.pro/images/..."
    alt: "Lagoon 400 S2"
tags: ["lagoon", "2016"]
---

## Description

Gebrauchtboot; Baujahr 2016

## Specifications

- **Brand**: lagoon
- **Year**: 2016
- **Length**: 11.97 m
- **Beam**: 7.25 m
- **Boat type**: Katamaran
- **Engine**: 2 x 40 PS / 29 kW

PUT /api/listings/{id}

Update a listing. Partial update — only provided fields are changed. Auth required — owner only.

curl -X PUT https://api.owning.pro/api/listings/lagoon-400-s2-JP12QW \
  -H "Authorization: Bearer own_aBcD123eFgH..." \
  -H "Content-Type: application/json" \
  -d '{ "price": { "amount": 280000, "currency": "EUR", "negotiable": false } }'
CodeMeaning
200Updated listing
403Not the listing owner
404Listing not found

DELETE /api/listings/{id}

Soft-delete a listing. Auth required — owner only.

curl -X DELETE https://api.owning.pro/api/listings/lagoon-400-s2-JP12QW \
  -H "Authorization: Bearer own_aBcD123eFgH..."

# Response: { "deleted": true, "id": "lst_01KX..." }

PATCH /api/listings/{id}

Change listing status. Auth required — owner only. Allowed transitions: active, paused, sold.

curl -X PATCH https://api.owning.pro/api/listings/lagoon-400-s2-JP12QW \
  -H "Authorization: Bearer own_aBcD123eFgH..." \
  -H "Content-Type: application/json" \
  -d '{ "status": "paused" }'

POST /api/listings/{id}/publish

Publish a draft listing — moves it from draft to active. Auth required — owner only.

curl -X POST https://api.owning.pro/api/listings/lagoon-400-s2-JP12QW/publish \
  -H "Authorization: Bearer own_aBcD123eFgH..."
CodeMeaning
200Listing published (now active)
403Not the listing owner
404Listing not found
409Listing is not in draft status

POST /api/listings/{id}/contact

Send a message to the listing owner via email. Public — no auth required. The seller's email is never exposed. Rate limit: 5 per hour per IP.

Request Body

FieldTypeRequiredDescription
namestringYes1–100 characters
emailstringYesReply-to email (max 200)
messagestringYes1–2000 characters
curl -X POST https://api.owning.pro/api/listings/lagoon-400-s2-JP12QW/contact \
  -H "Content-Type: application/json" \
  -d '{
    "name": "Jane Doe",
    "email": "jane@example.com",
    "message": "Is this still available? Can you send more photos?"
  }'

# Response: { "message": "Your message has been sent to the listing owner." }

POST /api/listings/{id}/images

Upload images to an existing listing (owner only). Auth required. Multipart form data, up to 10 images per request. Rate limit: 50 images per day.

curl -X POST https://api.owning.pro/api/listings/lagoon-400-s2-JP12QW/images \
  -H "Authorization: Bearer own_aBcD123eFgH..." \
  -F "files=@photo1.jpg" \
  -F "files=@photo2.jpg"

# Response: { "listing_id": "...", "slug": "...", "images": [...], "uploaded": 2 }

GET /api/listings.md

Get the full listings catalog as Markdown. Public. Supports the same query parameters as GET /api/listings. Useful for agents that want to browse the catalog in a single request.

curl "https://api.owning.pro/api/listings.md?category=boats&limit=5"

Categories

GET /api/categories

Get the full category tree with listing counts. Public. Hierarchical with count (active listings) and children on each node.

Query Parameters

ParamTypeDescription
hide_emptybooleanHide categories with zero listings (parents with non-empty children are kept)
curl https://api.owning.pro/api/categories

# Response:
{
  "categories": [
    {
      "id": "vehicles",
      "name": "Vehicles",
      "slug": "vehicles",
      "count": 7668,
      "children": [
        { "id": "boats", "name": "Boats", "slug": "boats", "count": 7668, "children": [] },
        { "id": "cars", "name": "Cars", "slug": "cars", "count": 0, "children": [] }
      ]
    }
  ]
}

GET /api/categories/{id}

Get a single category by ID or slug, with its direct children and counts. Public.

curl https://api.owning.pro/api/categories/boats

Asset Types

Asset types define structured attribute templates per category. They tell you which fields are available for listings in a given category, and which are filterable in search.

GET /api/asset-types

List all available asset type templates. Public.

GET /api/asset-types/{type}

Get a specific asset type definition with all its attributes. Public. The response includes which attributes are filterable and their filter types (range, select, boolean).

curl https://api.owning.pro/api/asset-types/boats

# Response:
{
  "id": "boats",
  "label": "Boats",
  "description": "Watercraft - sailboats, motorboats, catamarans, yachts",
  "categoryIds": ["boats"],
  "attributes": [
    { "key": "brand", "label": "Brand", "type": "string", "filterable": true, "filterType": "select" },
    { "key": "year", "label": "Year", "type": "number", "filterable": true, "filterType": "range" },
    { "key": "length", "label": "Length", "type": "number", "filterable": true, "filterType": "range", "unit": "m" },
    { "key": "boat_type", "label": "Boat Type", "type": "string", "filterable": true, "filterType": "select" }
  ]
}

Use the filterable attributes to construct attr[...] query parameters for GET /api/listings.

Auth & API Keys

POST /api/auth/register

Register with email and password. Public. Returns a JWT session token immediately.

FieldTypeRequiredDescription
emailstringYesValid email address
passwordstringYes8–128 characters
namestringNoDisplay name (1–100 chars)
curl -X POST https://api.owning.pro/api/auth/register \
  -H "Content-Type: application/json" \
  -d '{"email":"user@example.com","password":"securepassword123","name":"Jane Doe"}'

# Response (201):
{
  "user": { "id": "usr_...", "email": "user@example.com", "name": "Jane Doe", "type": "human", "verified": false, "created_at": "..." },
  "token": "eyJhbGciOiJIUzI1NiJ9...",
  "token_type": "bearer",
  "expires_in": 604800
}
CodeMeaning
201Account created, session token returned
409Email already registered

POST /api/auth/login

Login with email and password. Public. Returns a JWT valid for 7 days.

curl -X POST https://api.owning.pro/api/auth/login \
  -H "Content-Type: application/json" \
  -d '{"email":"user@example.com","password":"securepassword123"}'
CodeMeaning
200Login successful
401Invalid email or password

GET /api/me

Get the authenticated user's profile. Auth required.

curl https://api.owning.pro/api/me \
  -H "Authorization: Bearer own_aBcD123eFgH..."

# Response: { "user": { "id": "usr_...", "email": "...", "name": "...", "type": "human", ... } }

POST /api/api-keys

Generate a new API key. Auth required (JWT session). The plaintext key is returned once — store it securely.

FieldTypeRequiredDescription
namestringYesLabel for the key (1–100 chars)
permissionsenumNoread, write (default), admin
curl -X POST https://api.owning.pro/api/api-keys \
  -H "Authorization: Bearer eyJhbG..." \
  -H "Content-Type: application/json" \
  -d '{"name":"My Integration Key","permissions":"write"}'

# Response (201):
{
  "id": "apk_01JX...",
  "key": "own_aBcD123eFgH456iJkL789mNoP012qRsT345uVwX678yZ",
  "key_prefix": "own_aBcD1",
  "label": "My Integration Key",
  "permissions": "write",
  "created_at": "2026-07-10T12:00:00.000Z",
  "message": "Store this API key securely. It will not be shown again."
}

GET /api/api-keys

List the authenticated user's API keys (without plaintext). Auth required.

curl https://api.owning.pro/api/api-keys \
  -H "Authorization: Bearer eyJhbG..."

# Response: { "keys": [{ "id": "apk_...", "key_prefix": "own_aBcD1", "label": "...", "permissions": "write", ... }] }

DELETE /api/api-keys/{id}

Revoke (soft-delete) an API key. Auth required — only the key owner can revoke.

curl -X DELETE https://api.owning.pro/api/api-keys/apk_01JX... \
  -H "Authorization: Bearer eyJhbG..."

# Response: { "id": "apk_...", "revoked": true, "revoked_at": "..." }

Image Upload

POST /api/upload

Upload a standalone image (no listing required). Auth required. Image is converted to webp. Rate limit: 50 images per day. Use this to get image URLs before creating a listing.

curl -X POST https://api.owning.pro/api/upload \
  -H "Authorization: Bearer own_aBcD123eFgH..." \
  -F "file=@photo.jpg"

# Response (201):
{ "url": "https://static.owning.pro/images/tmp-usr01-abc/1.webp", "alt": "photo" }
CodeMeaning
201Image uploaded
400Invalid file type or size (max 10MB; jpg, png, webp, heic, heif, avif)
401Authentication required
429Daily upload limit exceeded (50/day)

Schema

GET /api/schema/listing

Get the JSON Schema (draft 2020-12) for the Listing data type. Public. Use this to validate listing data before submitting via POST /api/listings.

curl https://api.owning.pro/api/schema/listing

# Returns a JSON Schema document:
{
  "$schema": "https://json-schema.org/draft/2020-12/schema",
  "$id": "https://owning.pro/api/schema/listing",
  "title": "Owning Listing",
  "type": "object",
  "required": ["id", "slug", "title", "description", "category", ...],
  "properties": { ... }
}

GET /api/schema/listing.md

Get the listing schema in Markdown format for AI agents. Public.

curl https://api.owning.pro/api/schema/listing.md

Agent Discovery

GET /.well-known/ai.json

Machine-readable description of the API surface for agent auto-discovery. Public. Returns endpoint paths, auth scheme, rate limits, response formats, and schema references. Also discoverable via the AI-Discovery directive in /robots.txt.

curl https://owning.pro/.well-known/ai.json

# Response:
{
  "name": "Owning",
  "description": "Classifieds portal - buy and sell new and second-hand items",
  "api": {
    "base_url": "https://owning.pro/api",
    "version": "v1",
    "endpoints": {
      "listings": "/api/listings",
      "categories": "/api/categories",
      "schema": "/api/schema/listing",
      "auth": "/api/auth",
      "interactive_docs": "/api/docs",
      "openapi_spec": "/api/openapi.json"
    },
    "auth": {
      "type": "api_key",
      "header": "Authorization",
      "prefix": "Bearer",
      "docs": "/api/schema/listing.md"
    }
  },
  "formats": ["json", "markdown"]
}
Tip for AI Agents

docsApi.calloutTipDesc

API Documentation — Owning.pro | Owning Docs