# Enterprise Governance, Security & Access

> Team roles, maker-checker approvals, SSO, SCIM, access reviews, security evidence, support, and SLA reporting.

Product 7 in the [Partner API product catalog](/partners/docs/api-products), covering **37 operations**.

Team roles, maker-checker approvals, SSO, SCIM, access reviews, security evidence, support, and SLA reporting.

## Integration guides

[enterprise security](/partners/docs/enterprise-security) · [team access support](/partners/docs/team-access-support) · [sla](/partners/docs/sla)

## Endpoint catalog

Paths are relative to `https://mystocks.africa/api/v1/partner` in production and `https://mystocks.africa/api/sandbox/v1/partner` in sandbox.

Open the [API Reference](/partners/docs/api-reference) and search the operation ID for request parameters, schemas, response codes, and examples. Use the [API Tester](/partners/docs/api-tester) to exercise an operation.

Sandbox availability is taken from each operation's OpenAPI metadata. Production-only operations and unsupported sandbox stubs are explicitly distinguished; account entitlements and instrument eligibility still apply.

| Method and path                               | Operation ID                   | Purpose                                                          | Sandbox         |
| --------------------------------------------- | ------------------------------ | ---------------------------------------------------------------- | --------------- |
| `GET /approvals`                              | `listPartnerApprovals`         | List organization approval requests                              | Production only |
| `POST /approvals`                             | `createPartnerApproval`        | Submit an operation for maker-checker approval                   | Production only |
| `GET /approvals/{approvalId}`                 | `getPartnerApproval`           | Retrieve approval evidence and event history                     | Production only |
| `PATCH /approvals/{approvalId}`               | `decidePartnerApproval`        | Approve, reject, cancel, or delegate a request                   | Production only |
| `GET /approvals/policies`                     | `getPartnerApprovalPolicy`     | Retrieve maker-checker policy                                    | Production only |
| `PATCH /approvals/policies`                   | `updatePartnerApprovalPolicy`  | Update maker-checker policy                                      | Production only |
| `GET /enterprise/access-reviews`              | `listPartnerAccessReviews`     | List access certification reviews                                | Production only |
| `PATCH /enterprise/access-reviews`            | `schedulePartnerAccessReviews` | Configure recurring access certifications                        | Production only |
| `POST /enterprise/access-reviews`             | `createPartnerAccessReview`    | Start an access certification review                             | Production only |
| `GET /enterprise/access-reviews/{reviewId}`   | `getPartnerAccessReview`       | Retrieve access review subjects                                  | Production only |
| `PATCH /enterprise/access-reviews/{reviewId}` | `decidePartnerAccessReview`    | Record an access certification decision                          | Production only |
| `GET /enterprise/evidence`                    | `exportPartnerEvidence`        | Export security and compliance evidence                          | Production only |
| `DELETE /enterprise/scim`                     | `revokePartnerScimToken`       | Revoke a SCIM provisioning token                                 | Production only |
| `GET /enterprise/scim`                        | `listPartnerScimTokens`        | List SCIM provisioning tokens                                    | Production only |
| `POST /enterprise/scim`                       | `createPartnerScimToken`       | Create a SCIM provisioning token                                 | Production only |
| `GET /enterprise/sso`                         | `getPartnerSso`                | Retrieve enterprise SSO configuration                            | Production only |
| `PATCH /enterprise/sso`                       | `updatePartnerSso`             | Configure SAML or OIDC SSO                                       | Production only |
| `POST /oauth/token`                           | `createOAuthToken`             | Issue OAuth client-credentials access token                      | Production only |
| `GET /security`                               | `getEnterpriseSecurity`        | Get enterprise security controls                                 | Production only |
| `PATCH /security`                             | `updateEnterpriseSecurity`     | Update enterprise security controls                              | Production only |
| `DELETE /sessions`                            | `revokePartnerSession`         | Revoke a partner-console session                                 | Production only |
| `GET /sessions`                               | `listPartnerSessions`          | List active and historical partner-console sessions              | Production only |
| `GET /sla`                                    | `listSla`                      | SLA status                                                       | Available       |
| `GET /support`                                | `listPartnerSupportTickets`    | List partner support cases                                       | Production only |
| `POST /support`                               | `createPartnerSupportTicket`   | Open a partner support case with SLA clocks                      | Production only |
| `GET /support/{ticketId}`                     | `getPartnerSupportTicket`      | Get a support case and partner-visible conversation              | Production only |
| `PATCH /support/{ticketId}`                   | `closePartnerSupportTicket`    | Resolve or close a partner support case                          | Production only |
| `POST /support/{ticketId}/messages`           | `replyToPartnerSupportTicket`  | Add a partner-visible support message                            | Production only |
| `GET /team`                                   | `getPartnerTeam`               | List organization members, roles, invitations, and access policy | Production only |
| `PATCH /team`                                 | `updatePartnerAccessPolicy`    | Update organization access policy                                | Production only |
| `DELETE /team/invites`                        | `cancelPartnerInvitation`      | Cancel a pending invitation                                      | Production only |
| `POST /team/invites`                          | `invitePartnerMember`          | Invite a verified-email member                                   | Production only |
| `PATCH /team/members/{memberId}`              | `updatePartnerMember`          | Change a member's roles or access status                         | Production only |
| `GET /team/roles`                             | `listPartnerRoles`             | List system and custom roles and the permission catalogue        | Production only |
| `POST /team/roles`                            | `createPartnerRole`            | Create a custom partner role                                     | Production only |
| `DELETE /team/roles/{roleId}`                 | `deletePartnerRole`            | Delete an unused custom role                                     | Production only |
| `PATCH /team/roles/{roleId}`                  | `updatePartnerRole`            | Update a custom role and recalculate assigned-member permissions | Production only |

## Shared contracts

[auth](/partners/docs/auth) · [errors](/partners/docs/errors) · [rate limits](/partners/docs/rate-limits) · [contract guarantees](/partners/docs/contract-guarantees)

[Download the September 2026 specification PDF](/docs/PartnerAPI.pdf). Read the [online clarifications](/partners/docs/partner-specification) before using the PDF's general examples.
