API key
48 alphanumeric characters. The key remains available under My account until you regenerate it.
A focused interface for catalog access, balance management and instant digital delivery.
https://api.goribucshop.comACCESS
Every API request requires your personal key in the X-API-Key header. Keep it private and use it only from your backend.
48 alphanumeric characters. The key remains available under My account until you regenerate it.
Never expose the key in frontend code, mobile apps or public repositories.
X-API-Key: YOUR_API_KEY
FIRST REQUEST
Request the live catalog in seconds. Replace the placeholder with your API key.
curl "https://api.goribucshop.com/api/v2/catalog" \
-H "X-API-Key: YOUR_API_KEY"
import requests
response = requests.get(
"https://api.goribucshop.com/api/v2/catalog",
headers={"X-API-Key": "YOUR_API_KEY"},
timeout=15,
)
response.raise_for_status()
print(response.json())
/api/v2/catalogReturns every GORIB product with its public SKU, price and live availability.
skustringStable GORIB product code.
fulfillmentstringinstant_code, automatic or assisted.
recipient_typestringWhich recipient value the order requires.
required_fieldsarrayExact recipient field keys required for this product.
supports_player_checkbooleanWhether the recipient nickname can be verified before checkout.
price_usdstringUnit price in USD with three decimal places.
stockinteger | nullFinite code stock, or null for non-stock products.
[
{
"sku": "GORIB-MOBILE-LEGENDS-GLOBAL-86-DIAMONDS",
"name": "GORIB Mobile Legends Global 86 Diamonds",
"category": "games/mobile-legends/global",
"fulfillment": "automatic",
"recipient_type": "mobile_legends_player_server",
"required_fields": ["player_id", "server_id"],
"supports_player_check": true,
"price_usd": "1.250",
"available": true,
"stock": null,
"min_quantity": 1,
"max_quantity": 20
}
]/api/v2/profileReturns account details and available balance.
{
"telegram_id": 123456789,
"username": "username",
"language": "en",
"balance_usd": "250.000",
"api_key_hint": "Ab12••••Xy90"
}/api/v2/ordersCreates one protected order for any SKU in the unified catalog.
Send a unique Idempotency-Key for every checkout attempt. Retrying the same request is safe and will not create a duplicate charge.
X-API-KeyrequiredYour private API key.
Idempotency-KeyrequiredUnique value, 8–100 letters, numbers or hyphens.
skurequiredPublic GORIB SKU from the catalog.
quantityrequiredMust be inside the product’s current limits.
fieldsconditionalObject containing every key listed in the product’s required_fields.
recipientlegacyBackward-compatible shortcut for products that require only one recipient field.
curl -X POST \
"https://api.goribucshop.com/api/v2/orders" \
-H "X-API-Key: YOUR_API_KEY" \
-H "Idempotency-Key: checkout-8f31a2c4" \
-H "Content-Type: application/json" \
-d '{"sku":"GORIB-MOBILE-LEGENDS-GLOBAL-86-DIAMONDS","quantity":1,"fields":{"player_id":"123456789","server_id":"1234"}}'{
"order_id": "GORIB-DIGITAL-550e8400-e29b-41d4-a716-446655440000",
"sku": "GORIB-MOBILE-LEGENDS-GLOBAL-86-DIAMONDS", "status": "processing", "quantity": 1,
"unit_price_usd": "1.250", "total_price_usd": "1.250",
"balance_usd": "248.750", "codes": [],
"status_url": "/api/v2/orders/GORIB-DIGITAL-550e8400-e29b-41d4-a716-446655440000"
}/api/v2/orders/{order_id}Returns the current result, item statuses and any delivered customer codes.
An API key can read only orders created by the same account. Recipient values are returned in recipient_fields; internal processing details are never included.
/api/v2/api-key/rotateInvalidates the current key and issues a new one.
The new key remains available under My account. The previous key stops working immediately.
REFERENCE
GOOD PRACTICE
Treat your API key like a password. Rotate it immediately if it may have been exposed.