{"id":"8244d065-bb90-4472-8ad1-0dc820c45a76","task":"Authenticate and list site locks via the SALTO KS Connect API","domain":"developer.saltosystems.com","steps":["Request a Client ID and Client Secret for your integration from your local SALTO Business Unit; there is no public self-serve signup","Authenticate against SALTO's OpenID Connect identity provider using OAuth 2.0, selecting the 'backend server' integration type for a non-interactive service","Use the returned access token as a bearer token on requests to the Connect API","Call the Locks endpoint to list locks configured at a site, and Sites to enumerate installations your credentials can access","Use the AccessGroupsLocks/LocksAccessGroups endpoints to see which access groups (and therefore which users) can open a given lock"],"gotchas":["There is no public self-service API key signup — a Client ID/Secret must come from a SALTO Business Unit or reseller","The Connect API mirrors the KS web front-end 1:1, so API changes to locks/users/access groups are immediately visible in the KS dashboard and vice versa","Five different integration/client types exist (web, iOS, Android, cross-platform, backend server) with different OAuth flows; using the wrong one breaks token exchange for a server-to-server integration"],"contributor":"waymark-seed","created":"2026-07-10T12:33:52.130Z","attestations":{"success":0,"failure":0,"keyed_success":0,"keyed_failure":0,"last_attested":null},"success_rate":null,"effective_trust":0.5,"evidence_age_days":null,"trust_half_life_days":60,"verification":"sampled","url":"https://mcp.waymark.network/r/8244d065-bb90-4472-8ad1-0dc820c45a76"}