> ## Documentation Index
> Fetch the complete documentation index at: https://alyte.mintlify.site/llms.txt
> Use this file to discover all available pages before exploring further.

# Unsupported legacy AP2 purchase — verified checkout authorization is not available



## OpenAPI

````yaml https://alyte-sandbox-f365cfb3ma-ey.a.run.app/openapi.public.json post /ap2/purchase
openapi: 3.1.0
info:
  title: Alyte API
  description: >-
    Secure agentic checkout for live-events ticketing. REST is the canonical
    surface; MCP/A2A are adapters over the same orchestrator.
  version: 1.0.0
servers:
  - url: /
    description: this instance
security:
  - bearerAuth: []
tags:
  - name: catalog
    description: Shop / event / tier discovery
  - name: ticketing
    description: 'The purchase spine: quote → reserve → confirm'
  - name: payments
    description: One-shot authorize + result reads
  - name: acp
    description: Agentic Commerce Protocol — checkout sessions (OpenAI ACP conformance)
  - name: vic
    description: >-
      Visa Intelligent Commerce — mandate-governed purchase-initiate (the VIC
      mandate is the spend authority)
  - name: signed-mandate
    description: >-
      Network signed-mandate (VIC / Mastercard Agent Pay shape) — a detached
      network signature over the mandate artefact is verified with real crypto
      before the spend authority is granted
  - name: ap2
    description: Legacy AP2 purchase — unsupported pending verified checkout authorization
  - name: buyer
    description: >-
      Buyer surface — magic-link identity, bring/create agents, card capture
      (PSP iframe), and mandates whose scope is locked server-side to the shop
      the session is for
  - name: discovery
    description: >-
      PUBLIC discovery (no auth) — the opt-in shop window + the ACP product
      feed. Only shops that flipped `discoverable` appear; everything else 404s.
  - name: protocols
    description: Protocol adapters (MCP / A2A) over the same orchestrator as REST
  - name: integration
    description: >-
      Server-to-server merchant integration (API token) — e.g. minting buyer
      sessions for users the MERCHANT'S own auth has already verified
paths:
  /ap2/purchase:
    post:
      tags:
        - ap2
      summary: >-
        Unsupported legacy AP2 purchase — verified checkout authorization is not
        available
      requestBody:
        required: true
        content:
          application/json:
            schema:
              type: object
              properties:
                tierId:
                  type: string
                  minLength: 1
                quantity:
                  type: integer
                  exclusiveMinimum: 0
                  maximum: 999
                  default: 1
                instrumentToken:
                  type: string
                  minLength: 1
                scheme:
                  type: string
                  enum:
                    - visa
                    - mastercard
                    - amex
                  default: visa
                geo:
                  type: string
                  minLength: 2
                  maxLength: 2
                  default: DE
                intentMandate:
                  type: object
                  properties:
                    user_cart_confirmation_required:
                      type: boolean
                    natural_language_description:
                      type: string
                    merchants:
                      type: array
                      items:
                        type: string
                    skus:
                      type: array
                      items:
                        type: string
                    requires_refundability:
                      type: boolean
                    intent_expiry:
                      type: string
                      minLength: 1
                  required:
                    - user_cart_confirmation_required
                    - natural_language_description
                    - intent_expiry
                cartMandate:
                  type: object
                  properties:
                    contents:
                      type: object
                      properties:
                        id:
                          type: string
                          minLength: 1
                        user_cart_confirmation_required:
                          type: boolean
                        payment_request:
                          type: object
                          properties:
                            details:
                              type: object
                              properties:
                                id:
                                  type: string
                                total:
                                  type: object
                                  properties:
                                    label:
                                      type: string
                                    amount:
                                      type: object
                                      properties:
                                        currency:
                                          type: string
                                        value:
                                          type: string
                        cart_expiry:
                          type: string
                          minLength: 1
                        merchant_name:
                          type: string
                      required:
                        - id
                        - payment_request
                        - cart_expiry
                        - merchant_name
                    merchant_authorization:
                      type: string
                  required:
                    - contents
                userAuthorization:
                  type: string
              required:
                - tierId
                - instrumentToken
                - intentMandate
                - cartMandate
      responses:
        '200':
          description: Default Response
      deprecated: true
components:
  securitySchemes:
    bearerAuth:
      type: http
      scheme: bearer
      bearerFormat: JWT

````

This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.