Skip to main content
V1 remains available for existing integrations. This reference documents the same URLs, credentials, and payloads your integration already uses. The base URL is https://storerocket.io/api. There is no /v1 segment in a V1 URL.

V1 locations

List, read, create, update, and delete locations.

V1 leads

List, read, and delete captured leads.

Authenticate a request

Use the legacy API token already configured in your V1 integration. Send it in the Authorization header:
Replace YOUR_LEGACY_TOKEN with your existing token. For JSON writes, also send Content-Type: application/json. V1 also accepts the legacy api_token parameter. Prefer the header for new requests so the token does not appear in the URL.
The current API Tokens dashboard creates V2 tokens. V1 and V2 tokens are separate credentials; a newly created V2 token does not authenticate a V1 request.Keep a working V1 token when using this reference. If you no longer have your legacy token, contact support.

Project scope and IDs

Every V1 request operates on the token owner’s personal project. V1 URLs do not accept a project ID, and changing the project selected in the dashboard does not change this scope. Location and lead IDs are numeric database IDs returned as strings, such as "12345". Use an ID returned by the matching V1 list endpoint. V2 public IDs are not interchangeable with V1 IDs. The personal project’s plan must include REST API access.

V1 and V2 differences

Use V2 for new location integrations. You do not need to migrate an existing integration to use these V1 docs. For lead reads, use the V1 lead endpoints.

Errors and rate limits

Send Accept: application/json on every request to receive JSON errors. The API rate limit is 1,000 requests per minute. Authentication errors use a message field:
A missing location or lead uses an error field:
A location write without its required name returns 422:
V1 retains its existing error shapes. The V2 error reference describes the V2 contract.