Developer overview
Checkpoint is a three-surface product: marketing site, customer admin, and internal platform ops. Customer integrations run against the Core API with organisation-scoped credentials, never against platform-only routes.
Core API
REST API at api.buffrcheckpoint.com. Tenant-scoped JWTs. RBAC on every route. Audit events on mutating calls.
Webhooks and outbox
Host notifications and delivery instructions are processed asynchronously. Do not expect SMS or email to go out inside the check-in request.
Kiosk and MDM
Device provisioning, CRAN compliance evidence, and kiosk experience sync are customer-admin flows, not public self-service APIs.
Regulated capabilities
NFC badges, SMS, and live USSD menus are capability-gated platform features. Switching one on for your organisation has no effect until the platform marks it live.
Full OpenAPI publication and sandbox keys are provided during onboarding. For partnership or regulated integrations, email team@buffranalytics.com with your organisation and use case.

