workspace_premiumCertifada
ProductHow it worksPricingFAQ
Sign inGet started arrow_forward
api Enterprise Procurement v1.4

Developer API Terms of Use

Rules governing REST API access, authentication token security, rate limits, webhooks, and deprecation schedules.

event Effective Date: 2026-02-01gavel UAE / ADGM / DIFC & Global Standards
Legal AgreementsshieldPrivacy PolicygavelTerms of ServicecookieCookie PolicydescriptionData Processing AgreementreportAcceptable Use Policy
Trust & SecuritylockSecurity OverviewverifiedTrust Centerverified_userCompliance & GovernancehubSubprocessors Listbug_reportResponsible DisclosureaccessibilityAccessibility Statement
Enterprise ProcurementspeedService Level Agreementreceipt_longRefund & Billing PolicyapiAPI Terms of Usecontact_supportContact & Support
toc On This Page:
1. API Access & Authentication Keys2. Rate Limits & Fair Usage3. Webhook Security & Signatures4. API Deprecation & Version Policy

# 1. API Access & Authentication Keys

API access requires active API keys or OAuth2 bearer tokens. Developers are responsible for maintaining secret key confidentiality and preventing token leakages.

# 2. Rate Limits & Fair Usage

API endpoints are subject to rate limiting (e.g. 600 requests/minute per workspace). Requests exceeding rate limits will receive HTTP 429 Too Many Requests responses.

# 3. Webhook Security & Signatures

Webhook events include HMAC SHA-256 signatures in the X-Certifada-Signature header. Receiving servers must verify signatures prior to processing payloads.

# 4. API Deprecation & Version Policy

Certifada provides a minimum of 12 months advance notice prior to deprecating any major API version, ensuring smooth transitions for enterprise integrations.

verified_user

Have questions about our legal policies or need custom enterprise terms?

Our legal and security team is available to assist enterprise procurement teams with custom DPA execution, data residency compliance, or SLA addendums.

mail Contact Legal Teamdescription Request Custom DPA
workspace_premiumCertifada

The certificate lifecycle platform. Design, issue, deliver and verify digital credentials your recipients can trust — at any scale.

gavel UAE PDPL & EU GDPRverified_user ISO & SOC2 Ready

Product

ProductHow it worksPricingRecipient Wallet

Trust & Security

Security OverviewTrust CenterCompliance & StandardsSubprocessorsResponsible Disclosure

Legal & Privacy

Privacy PolicyTerms of ServiceCookie PolicyData Processing (DPA)Acceptable Use PolicyCookie settings

Enterprise & SLA

Enterprise SLAAPI Terms of UseAccessibility StatementRefund & Billing PolicyContact & Legal Support
© 2026 Certifada — All rights reserved.•UAE & Global Enterprise Infrastructure
Powered by CuspForge Technologies L.L.C
cookie
We use analytics cookies

Certifada needs a few essentials to work. We'd also like to measure how the site is used so we can improve it. Analytics only runs if you say yes. Read our cookie policy