Authentication
Send the API key as Authorization: Bearer owa_your_api_key.
Visitor attribution
Provide a stable subid for the visitor/member. Returned tracking URLs are short-lived and signed.
Inventory is dynamic
Country, device, status and campaign availability can change. Refresh inventory rather than assuming a previously returned offer is permanently valid.