List transactions
GET
/api/transactions
deprecated
Requires: Transactions.Reports, merchant scope.
Retrieves a paginated list of transactions with optional filtering and sorting.
Example request
Every block below sends the same request. Replace {{BASE_URL}} with the address of the API you are calling and {{API_KEY}} with your own key.
The request body is a . See the Request body section below for its fields.
Parameters
| Name | In | Type | Description |
|---|---|---|---|
MaxCreationTime
required |
query | string (date-time) | |
MinCreationTime
required |
query | string (date-time) | |
MaxModificationTime
required |
query | string (date-time) | |
MaxModifitionTime
required |
query | string (date-time) | Deprecated misspelled alias of `maxModificationTime`. Deprecated misspelling kept for compatibility. Use MinModificationTime or MaxModificationTime instead. When a request sends both spellings of the same bound, the correctly spelled parameter is used and this one is ignored. |
MinModificationTime
required |
query | string (date-time) | |
MinModifitionTime
required |
query | string (date-time) | Deprecated misspelled alias of `minModificationTime`. Deprecated misspelling kept for compatibility. Use MinModificationTime or MaxModificationTime instead. When a request sends both spellings of the same bound, the correctly spelled parameter is used and this one is ignored. |
MerchantId
required |
query | string (uuid) | Optional server-side filter on the owning merchant. When set, only transactions whose `MerchantId` equals this value are returned, and `totalCount` reflects that same filtered set rather than the whole estate. A merchant-scoped request is cheaper and faster than an unscoped one. This narrows within the caller's existing access scope and never widens it: a merchant the caller cannot see yields an empty page rather than a leak. `null` leaves the result unfiltered by merchant. Mirrors `GetTransactionContinuationInput.MerchantId` on the continuation list path. |
MerchantIds
required |
query | array of string (uuid) | Optional server-side filter restricting the result to several merchants at once. Repeat the parameter to supply more than one value. Behaves as `merchantId` does, except that a transaction matches when its `MerchantId` equals any listed value. Every filter on this request narrows. Supplying this alongside `merchantId` returns only the transactions that satisfy both, so a scalar value absent from this list yields an empty page. A list holding nothing usable fails closed on an empty page too, because a caller that asked to be narrowed must never be widened to the whole estate. `null` or an empty list leaves the result unfiltered by merchant. |
Filter
required |
query | string | Gets or sets a general filter string for the result set. |
Name
required |
query | string | Gets or sets the name filter for the result set. |
IncludeDeleted
required |
query | boolean | Gets or sets a value indicating whether to include deleted entities in the result set. |
IncludeInactive
required |
query | boolean | Gets or sets a value indicating whether to include inactive entities in the result set. |
Ids
required |
query | array of string (uuid) | Gets or sets a list of entity IDs to filter the result set. |
Sorting
required |
query | string | |
SkipCount
required |
query | integer (int32) | |
MaxResultCount
required |
query | integer (int32) | |
ExtraProperties
required |
query | object | |
suppressNulls
required |
query | boolean | If true, omit properties with null values. |
Request body
application/json
, required
| Field | Type | Description |
|---|
This request body has no documented fields.
Responses
200 OK
Body: PagedResultDtoOfTransactionDto
Each item has these fields.
| Field | Type | Description |
|---|---|---|
items
required |
array of TransactionDto | nullable |
totalCount
required |
integer (int64) |
This response has no documented body fields.
403 Forbidden
Body: RemoteServiceErrorResponse
Each item has these fields.
| Field | Type | Description |
|---|---|---|
error
required |
RemoteServiceErrorInfo |
This response has no documented body fields.
401 Unauthorized
Body: RemoteServiceErrorResponse
Each item has these fields.
| Field | Type | Description |
|---|---|---|
error
required |
RemoteServiceErrorInfo |
This response has no documented body fields.
400 Bad Request
Body: RemoteServiceErrorResponse
Each item has these fields.
| Field | Type | Description |
|---|---|---|
error
required |
RemoteServiceErrorInfo |
This response has no documented body fields.
404 Not Found
Body: RemoteServiceErrorResponse
Each item has these fields.
| Field | Type | Description |
|---|---|---|
error
required |
RemoteServiceErrorInfo |
This response has no documented body fields.
501 Not Implemented
Body: RemoteServiceErrorResponse
Each item has these fields.
| Field | Type | Description |
|---|---|---|
error
required |
RemoteServiceErrorInfo |
This response has no documented body fields.
500 Internal Server Error
Body: RemoteServiceErrorResponse
Each item has these fields.
| Field | Type | Description |
|---|---|---|
error
required |
RemoteServiceErrorInfo |
This response has no documented body fields.
default The request failed. The body carries the standard error envelope: a machine-readable `error.code`, a human-readable `error.message`, and `error.validationErrors` when the failure was a validation rejection. See the error-code reference in this document's description for the values `error.code` can take.
Body: RemoteServiceErrorResponse
Each item has these fields.
| Field | Type | Description |
|---|---|---|
error
required |
RemoteServiceErrorInfo |
This response has no documented body fields.
429 The request was refused because a rate limit was exceeded. Wait at least the interval `Retry-After` names before retrying, then back off. Limits are tuned per deployment, so read the allowance from the response headers rather than assuming a fixed ceiling.
Body: RateLimitProblemDetails
Each item has these fields.
| Field | Type | Description |
|---|---|---|
type
required |
string | The problem type identifier. Always the same value: the failure is the status code itself, so there is no sub-type for a caller to branch on. nullable |
title
required |
string | A short, human-readable summary of the problem type. nullable |
status
required |
integer (int32) | The HTTP status code, repeated in the body as the problem-details format defines. |
detail
required |
string | A human-readable explanation of this occurrence of the problem. nullable |
retryAfterSeconds
required |
integer (int32) | How long to wait before retrying, in whole seconds, carrying the same figure as the `Retry-After` header. Always at least one: a value of zero would invite an immediate retry that is certain to be rejected again. |
This response has no documented body fields.
Errors
A failed request returns the platform error envelope. The
error reference lists every value
error.code can carry and shows the four response shapes.