Provider organization: ManTech
Sales
Signed-in user API for a business sales cycle. The caller is the Firebase user from Authentication, not a developer API key. Routes are /api/v1/sales and /api/v1/businesses/{businessId}/sales.
Authentication
Authorization: Bearer with the Firebase ID token from /api/v1/auth login or refresh. Do not send a mantech_test_ or mantech_live_ key.
Capabilities
- Quotations
- Sales orders
- Fulfilments
- Invoices
- Returns
Known limitations
- Human session only. A developer API key, service account, or BusinessAppGrant does not authorize Sales.
- Requires a Firebase ID token. A developer API key is rejected.
- Authorization uses the caller membership and sales permissions on that business.
- A client-supplied business id is context, not proof of access.
- This is not a public self-serve data API and is not certified LIVE.
Endpoints
- POST/api/v1/sales/quotations
- GET/api/v1/sales/quotations
- POST/api/v1/sales/orders
- POST/api/v1/sales/orders/{orderId}/confirm
- POST/api/v1/sales/orders/{orderId}/invoices
- POST/api/v1/sales/returns
Access and quota
TEST · TEST
1,000 requests per UTC day per application + environment (shared across certified /api/v1 families)
Burst limiter plus daily quota. TEST is not unlimited.
Production · LIVE
Not a self-serve checkout. Request production access.
Not published as a public SLA.
There is no self-serve checkout. Production access is request-only. TEST keys are not production access. Quota is enforced by the gateway per application + environment, not by this page.
Gateway
Hosting sends /api/v1/sales to coreApi. Business-scoped /api/v1/businesses/{businessId}/sales uses the businesses rewrite.