OneBooks Developer Platform
Build the app merchants install inside OneBooks
OAuth 2.0 APIs, real-time events, embedded app pages, app data and hosted functions — discoverable in a marketplace that reaches every OneBooks business. Every plan, Free included, has full API access, and you keep 100% of what you charge.
$ curl -X POST https://api.getonebooks.com/journal \
-H "Authorization: Bearer $TOKEN" \
-H "Content-Type: application/json" \
-d '{
"date": "2026-08-12",
"description": "Owner investment",
"lines": [
{ "accountCode": "1200", "debit": 5000 },
{ "accountCode": "3000", "credit": 5000 }
]
}'
HTTP/2 201
{
"journalNumber": "JE-00042",
"lines": [
{ "accountCode": "1200", "debit": 5000, "credit": 0 },
{ "accountCode": "3000", "debit": 0, "credit": 5000 }
]
}From embedded iframe to ledger data
Your embedded app already holds a session token from App Bridge. Exchange it for an access token, then call the API — no redirect, no SDK required.
curl -X POST https://api.getonebooks.com/oauth/token \
-u "YOUR_CLIENT_ID:YOUR_CLIENT_SECRET" \
-d grant_type=urn:ietf:params:oauth:grant-type:token-exchange \
-d subject_token=SESSION_TOKEN \
-d subject_token_type=urn:ietf:params:oauth:token-type:jwtcurl https://api.getonebooks.com/invoices \
-H "Authorization: Bearer ACCESS_TOKEN"OAuth 2.0 + PKCEStandards-based authorization with granular scopes.Embedded appsShip a page that opens inside OneBooks, secured by short-lived session tokens.App dataTyped fields on invoices, customers and more — never part of the ledger.MarketplaceList once, reach every OneBooks business — keep 100% of the revenue.Webhooks & eventsHMAC-signed deliveries plus a 30-day catch-up log, for every document and app change.Hosted functionsRun your own JavaScript on OneBooks events, sandboxed — no server to operate.SandboxProvision disposable test businesses from the console.