Developers · Free plan

Your own website in front, SitesPlaced behind it.

A custom website with no backend of its own can use SitesPlaced for its catalogue, checkout and orders. You write the pages. SitesPlaced keeps the products, takes the payment and runs the orders.

By Manan Agrawal, Founder · Updated September 18, 2026

SitesPlaced has a public API at https://sitesplaced.com/api/v1. An API key is a password for a program: you create one in your store's settings and your code sends it with every request. A secret key lives on a server and can read and update orders, send orders in from another system and manage webhooks, depending on the permissions you give it. A publishable key is safe in browser code and can only read published products, prepare a checkout and look up tracking, and only from the websites you put on its allowed list. The API is on the free plan at 60 requests a minute per secret key; a paid store plan raises that to 300.

Plan

FreeFree plan

Where

Dashboard → your store → Settings → Developer

Setup time

a few minutes to create a key and make a first request

Website

Built into SitesPlaced

What Developer API does on a SitesPlaced store

Read your catalogue

GET /products and GET /categories return your published products with the prices your storefront shows, plus images, variants and stock, so a hand-coded site can list them without a database of its own.

Send the shopper to a prepared checkout

POST /checkout/sessions takes product ids and quantities and returns a link. The link opens your SitesPlaced cart with those lines already in it. Prices, stock, payment methods and every checkout guard stay SitesPlaced's own, and the link works for 24 hours.

Orders in and out

List orders, read one, update its status and tracking, or send an order in from another system with POST /orders. Sending the same external_id again updates the order instead of making a second one, so a retry is safe.

Webhooks and tracking

Register an https address and SitesPlaced posts to it when an order is created, paid, shipped, completed or cancelled. Each delivery is signed with HMAC-SHA256 so you can check it came from us. GET /tracking and the drop-in tracking widget show an order's status and never return a name, phone number, email or address.

Which plan, and what it costs

  • SitesPlaced: Free plan: the API at 60 requests a minute per secret key, and one connected shop. A paid store plan (Growth or AI Co-founder) raises that to 300 requests a minute and five connected shops.
  • Third-party fees: None.

Full plan details are on the pricing page. Plan tags on every SitesPlaced page mirror the real entitlement gate in the product, as of September 18, 2026.

How to set up Developer API

Where: Dashboard → your store → Settings → Developer. Takes: a few minutes to create a key and make a first request.

  1. Create a key

    Open your store in the dashboard, go to Settings → Developer and create an API key. Choose secret for code that runs on a server, or publishable for code that runs in a browser, and give it only the permissions the program needs.

  2. Copy it once

    The full key is shown one time. SitesPlaced keeps only a hash of it (a one-way fingerprint), so it cannot be shown again. Keep a secret key in your server's environment settings, never in a web page or a code repository.

  3. Make a first request

    Call GET https://sitesplaced.com/api/v1/me with the header “Authorization: Bearer” followed by your key. The reply names your store, the key's permissions and its rate limit.

  4. Build from the reference

    The reference at /developers/api covers every route with request and response examples: products, checkout sessions, orders, tracking and webhooks.

Good to know

  • A key placed in the URL is refused. Send it in the Authorization header.
  • A secret key sent from a web browser is refused with a 403. Browser code uses a publishable key, which only works from the websites on its allowed list.
  • Each key can be revoked on its own, without touching the others. A revoked key gets a 401 on every call.
  • Every response carries a request id in the X-Request-Id header. Quote it when you ask for help.
  • A webhook is attempted once, with an 8 second timeout. Poll GET /orders?updated_since= as a backstop.
  • The product routes only work for a published store.
  • A machine-readable description of the API (OpenAPI 3.1) is at https://sitesplaced.com/api/v1/openapi.json.

Other growth integrations

Razorpay, Shiprocket, Shipmozo, WhatsApp API, Meta CAPI: all built in.

Razorpay, cash on delivery, WhatsApp checkout, Shiprocket and Shipmozo are on the free plan. From ₹199/month (Starter): Meta Pixel + Conversions API, your own domain, branding removal, AI and analytics. The ₹499/month Growth plan adds WhatsApp Business API alerts and the 1-click checkouts, bring your own credentials. No app store, no per-integration fees.

Payments

  • Razorpay

    Razorpay

    UPI, cards, net banking and wallets at checkout. SitesPlaced takes 0% commission; Razorpay's standard gateway fee applies.

    razorpay.com
    Free
  • Stripe

    StripeNew

    Card, Apple Pay and Google Pay from customers worldwide. Connect your own Stripe account with a restricted key — payments land in your Stripe balance and SitesPlaced takes 0% commission.

    stripe.com
    Free
  • PayPal

    PayPalNew

    Customers pay with their PayPal balance or a card. Connect your own PayPal app — the money lands in your PayPal balance and SitesPlaced takes 0% commission.

    paypal.com
    Free
  • PhonePe

    PhonePeNew

    UPI, cards, net banking and wallets at checkout on your own PhonePe Business account. Money settles straight to you and SitesPlaced takes 0% commission; PhonePe's standard gateway fee applies.

    phonepe.com
    Free
  • Cashfree

    CashfreeNew

    UPI, cards, net banking, wallets and pay-later at checkout on your own Cashfree account. Money settles straight to you and SitesPlaced takes 0% commission; Cashfree's standard gateway fee applies.

    cashfree.com
    Free
  • Cash on delivery

    COD at checkout with an optional COD charge you set.

    Free
  • WhatsApp checkout

    WhatsApp checkout

    Order via WhatsApp for buyers who prefer to chat before paying.

    whatsapp.com
    Free
  • Sell with Shiprocket

    Sell with ShiprocketNew

    1-click checkout by Shiprocket — saved addresses, UPI/cards/COD and RTO scoring, without your own payment gateway. Shiprocket collects and settles to you; SitesPlaced takes 0%, Shiprocket charges 2% per order.

    shiprocket.in
    ₹499
  • Razorpay Magic Checkout

    Razorpay Magic CheckoutNew

    1-click checkout on your own Razorpay account — saved addresses, UPI/cards/COD in one step, with COD intelligence and RTO protection. Money settles straight to your Razorpay. Can run alongside Shiprocket checkout.

    razorpay.com
    ₹499

Shipping

  • Shiprocket

    Shiprocket

    Push orders to Shiprocket, get AWB numbers back, and show live tracking on your Track Order page.

    shiprocket.in
    Free
  • Shippo

    ShippoNew

    USPS, UPS, FedEx, DHL and Royal Mail labels for US, UK and international orders — around 5¢ a label with no monthly fee, billed to your own Shippo account.

    goshippo.com
    Free
  • Shipmozo

    ShipmozoNew

    Courier selection, pickup scheduling and tracking status synced back to each order.

    shipmozo.com
    Free
  • Rehbar PostNew

    Compare courier rates, book the shipment, print the label and track it back — on your own Rehbar Post account.

    rehbarpost.com
    Free

Fulfilment

  • Qikink

    Qikink

    Print-on-demand for India — t-shirts, hoodies and mugs printed and shipped domestically from your own Qikink account.

    qikink.com
    Free
  • Printify

    PrintifyNew

    Print-on-demand t-shirts, hoodies, mugs and posters. Link a product to your own Printify catalogue and paid orders are sent for printing automatically — Printify bills your account, we take nothing.

    printify.com
    Free

Messaging

Marketing

  • Meta Pixel + Conversions API

    Meta Pixel + Conversions APINew

    Your own Pixel on the storefront plus server-side Purchase events from the order record, deduplicated, so Instagram and Facebook ads report real sales. Bring your own credentials.

    facebook.com
    ₹199+
  • Judge.me reviews

    Judge.me reviewsNew

    Import the product reviews you already collected in Judge.me on Shopify or WooCommerce onto your product pages, matched by product name. Bring your own API token; SitesPlaced also collects and moderates its own product reviews on every plan.

    judge.me
    ₹499
  • Custom head code

    Paste Google Analytics, Clarity or any tag into your live site.

    ₹199+

Growth

  • Custom domain

    yourbrand.com with one-click DNS setup for most Indian registrars.

    ₹199+
  • ChatGPT & Claude (MCP)

    Create and edit your store by chatting with your AI assistant.

    modelcontextprotocol.io
    Free
  • Store import

    Bring a catalogue in from Instagram, your existing website, a PDF, dm2buy or Shopexer.

    Free
  • Developer APINew

    A public API for your store. A custom website with no backend of its own can read your products, send a shopper to your checkout with a prepared cart, read and update orders, look up tracking and receive webhooks.

    Free
  • WooCommerceNew

    Keep your WooCommerce shop. A plugin copies every order into SitesPlaced, so you get the order dashboard, the mobile app, courier booking and a tracking page. WooCommerce stays in charge of payment, stock and cancellation.

    Free
  • ShopifyNew

    Early access, not open to everyone yet. Keep your Shopify shop and copy its orders into SitesPlaced for the order dashboard, courier booking and a tracking page. Ask us for access.

    Free

Frequently asked questions

Is the SitesPlaced API free?

Yes. The API is on the free plan at 60 requests a minute per secret key. A paid store plan (Growth or AI Co-founder) raises the limit to 300 a minute. Over the limit you get a 429 reply with a Retry-After header telling you how many seconds to wait.

What is the difference between a secret key and a publishable key?

A secret key (it starts sp_live_sk_) is for servers only and does whatever its permissions allow. A publishable key (sp_live_pk_) may sit in browser code: it can only read products, prepare a checkout and look up tracking, and only from the websites on its allowed list.

Can shoppers pay on my own website?

Payment happens on your SitesPlaced checkout. Your site sends the shopper there with a prepared cart from POST /checkout/sessions, so the prices, stock, payment methods and checkout guards are the same ones your SitesPlaced store already uses.

How do I know a webhook really came from SitesPlaced?

Every delivery carries an X-SitesPlaced-Signature header: sha256= followed by the HMAC-SHA256 of the raw request body, made with the secret you were shown once when you created the webhook. Work out the same value on your side and compare the two in constant time.

Does this change my Zapier connection?

No. The older single store key that Zapier uses keeps working as it does today. On the new API that key can read orders and manage webhooks.

Create a key and make a request

Open a free store, create an API key under Settings → Developer, and call GET /me. The reference has an example for every route.

Read the developer docs