Skip to main content
Your API credentials are the username and password of your Kravata Business account. You create the account yourself in the Kravata Business portal.

Get your credentials

1

Register your company

Fill in the registration form: person type, ID type and number (NIT with its verification digit for companies), business name, contact data, a username and a password. Accept the data policy and the terms and conditions, and complete the reCAPTCHA.
2

Wait for approval

Your account starts as pending. Kravata reviews your company and defines your business model. When it is approved, status and complianceStatus in Get Client Info become approved.
3

Use your credentials

Send your username (not your email) and your password to POST /api/token.
Passwords must have at least 14 characters, including uppercase and lowercase letters, a number and a special character.
Forgot your password? Open the reset page, enter your ID type and number, and type the 6-digit code that Kravata sends to your registered email. Then choose a new password.

Tokens

You exchange your credentials for two JWT tokens:

Get your tokens

Refresh the access token

When the access token expires, request a new one with the refresh token:
When the refresh token also expires, request a new pair with POST /api/token.

Authenticate your requests

Most endpoints also require your clientId, in the path (/api/accounts/{clientId}) or as a query parameter (/api/ramps?clientId=...). Get it from Get Client Info.
Call the API only from your backend. Never expose your password or tokens in a browser or mobile app.