Skip to content

IntelliTrack API Changes – December 2024 ​

What changed in the IntelliTrack APIs in December 2024: the Get All Tenants API and the identity token APIs were removed, and API access now requires App Credentials authorized through OAuth 2.0.

The following changes will be put into effect on December 1, 2024 at approximately 08:00 EST (13:00 UTC).

Removal of Get All Tenants API ​

The Get All Tenants API, available at

GET: https://api-nexus.intellitrack.com/nexus/Tenants

will no longer be accessible.

If a user or app credential needs to access a list of associated tenants, a call to Get User Tenants should be used instead:

GET: https://api-identity.intellitrack.com/identity/Users/Tenants

Please note the response of these APIs are different, so further code changes will be needed.

Removal of Identity Token APIs and Enforcement of App Credentials for API Access ​

To consolidate authentication and improve system security, the following authentication APIs are being removed:

POST: https://api-identity.intellitrack.com/identity/Authenticate
POST: https://api-identity.intellitrack.com/{tenant}/identity/Authenticate
POST: https://api-identity.intellitrack.com/identity/Token

Authorization will now be completed using an OAuth 2.0 Authorization Grant Request issued to the IntelliTrack Identity Provider.

The OAuth Discovery Endpoint can be found here:

https://app.intellitrack.com/.well-known/openid-configuration

Authorization can be performed using any OAuth 2.0 compatible library. The details of the Authentication Grant are listed below. Additionally, a PowerShell script is provided below to show an example of the authorization request process.

Finally, User Credentials will not be granted tokens from the IntelliTrack Identity Provider Client that is demonstrated below. Moving forward, all API Access from Integrators must use App Credentials.

OAuth 2.0 Resource Owner Password Grant ​

These are the technical details for submitting a request to the Identity Provider to retrieve a token using the Resource Owner Password Grant.

Request Properties

NameValue
Host URLhttps://app.intellitrack.com/connect/token
Content-Typeapplication/x-www-form-urlencoded

Body Properties

NameValue
grant_typepassword
client_id99986BB2-B897-49C0-907E-E814366080DC
(this is a mandatory id that must be used)
scopeapi
(this is a mandatory value that must be used)
username{Application Credential Id}
password{Application Credential Secret}

Response JSON Properties

NameValue
token_typeBearer
expires_in{seconds to expire}
scopeapi
access_token{OAuth Bearer Token}

PowerShell Script Example ​

powershell
$url = "https://app.intellitrack.com/connect/token"
$contentType = "application/x-www-form-urlencoded"
$body = @{
   grant_type = "password"
   client_id = "99986BB2-B897-49C0-907E-E814366080DC"
   scope = "api"
   username = "{App Credential Id}"
   password = "{App Credential Secret}" }
$response = Invoke-WebRequest -Method POST -Uri $url -body $body -ContentType $contentType