Skip to main content

How the seller API works

Our seller API lets you manage your offers and orders from your own software. It's built for sellers who handle a large number of offers and want to automate the repetitive parts.

Who can use it

Verified sellers can use the Seller API. A maximum of 2 active credentials per account is allowed.

What you can do with the seller API

Offers

  • Create, update, pause, resume, and delete offers across currency, top-ups, items, accounts, and boosting

  • Change prices, quantities, and delivery times for 1 offer or a whole game at once

  • Upload many offers at once with a CSV file

Orders

  • View your orders, mark them as delivered, cancel them or fix delivery details

  • Generate an invoice

Your account

  • Switch yourself online or offline, read your notifications, and check any restrictions on your account

What you can't do with the seller API

The Seller API covers offers and orders only. Use the website or the app for these:

  • Withdrawals and balance

  • Messages, disputes and feedback

  • Account settings, verification and offer limit requests

  • Offer images and sales reports
    ​

How to get started

Generate your API credentials

  1. Go to Dashboard > Seller API.

  2. Under Generate API client credentials, enter a Credential name you'll recognize later, like Inventory sync bot.

  3. Choose an Expiration period: 1, 14, 30, 90, or 365 days.

  4. Click Generate credentials.

  5. Copy your Client ID and Client secret from the window that opens.

  6. Store both somewhere secure, like a password manager, then close the window.

Important: Your Client secret is shown only once. After you close the window, you can't view or recover it.

Treat your Client secret like a password. Anyone who has it can manage your offers and orders. Don't share it, don't post it in Discord, and don't include it in screenshots.

Authenticate your app

Your app trades your Client ID and Client secret for a short-lived access token, then sends that token with every request.

  1. Request an access token. Send your Client ID and Client secret to POST https://eldorado.gg/api/authentication/seller/token.

  2. Add the token to your requests. Include it in the Authorization header of every API call:

  3. Get a new token every 15 minutes. Access tokens expire after 15 minutes. When one does, request a new one the same way you got the first.

Important: There's no test environment. Every request changes your live offers and orders, so try your setup on a single offer first.

Manage and revoke credentials

Your active credentials are listed on the Seller API page with their name, Client ID, the last 4 characters of the Client secret, and the expiration date.

You can have up to 2 active credentials at a time. To replace a credential without downtime, generate a new one, switch your app over to it, then revoke the old one.

To revoke a credential, click Revoke next to it and confirm.

Revoking takes effect immediately and can't be undone. Any app using that Client ID can no longer request new access tokens. Access tokens that were already issued stop working within 15 minutes.

Troubleshooting

Lost your Client secret?

It can't be recovered. Revoke the credential, generate a new one, and update your app with the new Client ID and Client secret.

Your credential expired?

Your app can no longer request access tokens with it. Generate a new credential and update your app. Check the expiration date on the Seller API page so you can replace credentials before they run out.

Generate credentials button is unavailable?

You already have 2 active credentials. Revoke the one you no longer use, then try again.

Your API requests are rejected?

Your access token has probably expired. Request a new one. If the token request itself fails, check that your credential hasn't been revoked or expired.

Your Client secret may have been exposed?

Revoke that credential right away, then generate a new one.

Contact support

Email us at [email protected] if your requests keep failing after you've generated new credentials or if you have a question the API documentation doesn't answer. Have this ready:

  • Your Client ID (never send your Client secret)

  • The endpoint you called and the time of the request

  • The full error message you received

Did this answer your question?