# Enterprise Governance, Security & Access

> Team roles, maker-checker approvals, SSO, SCIM, access reviews, security evidence, support, and SLA reporting.

Product 7 in the [Partner API product catalog](/partners/docs/api-products), covering **37 operations**.

Team roles, maker-checker approvals, SSO, SCIM, access reviews, security evidence, support, and SLA reporting.

## Integration guides

[enterprise security](/partners/docs/enterprise-security) · [team access support](/partners/docs/team-access-support) · [sla](/partners/docs/sla)

## Endpoint catalog

Paths are relative to `https://mystocks.africa/api/v1/partner` in production and `https://mystocks.africa/api/sandbox/v1/partner` in sandbox.

Open the [API Reference](/partners/docs/api-reference) and search the operation ID for request parameters, schemas, response codes, and examples. Use the [API Tester](/partners/docs/api-tester) to exercise an operation.

Sandbox availability is taken from each operation's OpenAPI metadata. Production-only operations and unsupported sandbox stubs are explicitly distinguished; account entitlements and instrument eligibility still apply.

| Method and path | Operation ID | Purpose | Sandbox |
| --- | --- | --- | --- |
| `GET /approvals` | `listPartnerApprovals` | List organization approval requests | Production only |
| `POST /approvals` | `createPartnerApproval` | Submit an operation for maker-checker approval | Production only |
| `GET /approvals/{approvalId}` | `getPartnerApproval` | Retrieve approval evidence and event history | Production only |
| `PATCH /approvals/{approvalId}` | `decidePartnerApproval` | Approve, reject, cancel, or delegate a request | Production only |
| `GET /approvals/policies` | `getPartnerApprovalPolicy` | Retrieve maker-checker policy | Production only |
| `PATCH /approvals/policies` | `updatePartnerApprovalPolicy` | Update maker-checker policy | Production only |
| `GET /enterprise/access-reviews` | `listPartnerAccessReviews` | List access certification reviews | Production only |
| `PATCH /enterprise/access-reviews` | `schedulePartnerAccessReviews` | Configure recurring access certifications | Production only |
| `POST /enterprise/access-reviews` | `createPartnerAccessReview` | Start an access certification review | Production only |
| `GET /enterprise/access-reviews/{reviewId}` | `getPartnerAccessReview` | Retrieve access review subjects | Production only |
| `PATCH /enterprise/access-reviews/{reviewId}` | `decidePartnerAccessReview` | Record an access certification decision | Production only |
| `GET /enterprise/evidence` | `exportPartnerEvidence` | Export security and compliance evidence | Production only |
| `DELETE /enterprise/scim` | `revokePartnerScimToken` | Revoke a SCIM provisioning token | Production only |
| `GET /enterprise/scim` | `listPartnerScimTokens` | List SCIM provisioning tokens | Production only |
| `POST /enterprise/scim` | `createPartnerScimToken` | Create a SCIM provisioning token | Production only |
| `GET /enterprise/sso` | `getPartnerSso` | Retrieve enterprise SSO configuration | Production only |
| `PATCH /enterprise/sso` | `updatePartnerSso` | Configure SAML or OIDC SSO | Production only |
| `POST /oauth/token` | `createOAuthToken` | Issue OAuth client-credentials access token | Production only |
| `GET /security` | `getEnterpriseSecurity` | Get enterprise security controls | Production only |
| `PATCH /security` | `updateEnterpriseSecurity` | Update enterprise security controls | Production only |
| `DELETE /sessions` | `revokePartnerSession` | Revoke a partner-console session | Production only |
| `GET /sessions` | `listPartnerSessions` | List active and historical partner-console sessions | Production only |
| `GET /sla` | `listSla` | SLA status | Available |
| `GET /support` | `listPartnerSupportTickets` | List partner support cases | Production only |
| `POST /support` | `createPartnerSupportTicket` | Open a partner support case with SLA clocks | Production only |
| `GET /support/{ticketId}` | `getPartnerSupportTicket` | Get a support case and partner-visible conversation | Production only |
| `PATCH /support/{ticketId}` | `closePartnerSupportTicket` | Resolve or close a partner support case | Production only |
| `POST /support/{ticketId}/messages` | `replyToPartnerSupportTicket` | Add a partner-visible support message | Production only |
| `GET /team` | `getPartnerTeam` | List organization members, roles, invitations, and access policy | Production only |
| `PATCH /team` | `updatePartnerAccessPolicy` | Update organization access policy | Production only |
| `DELETE /team/invites` | `cancelPartnerInvitation` | Cancel a pending invitation | Production only |
| `POST /team/invites` | `invitePartnerMember` | Invite a verified-email member | Production only |
| `PATCH /team/members/{memberId}` | `updatePartnerMember` | Change a member's roles or access status | Production only |
| `GET /team/roles` | `listPartnerRoles` | List system and custom roles and the permission catalogue | Production only |
| `POST /team/roles` | `createPartnerRole` | Create a custom partner role | Production only |
| `DELETE /team/roles/{roleId}` | `deletePartnerRole` | Delete an unused custom role | Production only |
| `PATCH /team/roles/{roleId}` | `updatePartnerRole` | Update a custom role and recalculate assigned-member permissions | Production only |

## Shared contracts

[auth](/partners/docs/auth) · [errors](/partners/docs/errors) · [rate limits](/partners/docs/rate-limits) · [contract guarantees](/partners/docs/contract-guarantees)

[Download the September 2026 specification PDF](/docs/PartnerAPI.pdf). Read the [online clarifications](/partners/docs/partner-specification) before using the PDF's general examples.
