The API for continuous compliance evidence.

The StackWeaver Partner API connects audit firms, implementation partners, and compliance practices directly to client evidence. Request Evidence Packages, retrieve Evidence Objects, submit findings, trigger remediation, monitor review status, and automate compliance workflows from your existing systems.

Request API access →
Evidence Requests POST /evidence/request
Evidence Package GET /evidence/{id}
Submit Findings POST /findings
Trigger Remediation POST /remediation
Review Status GET /reviews
OAuthRESTWebhooksAudit Logs stackweaver.cloud/partner-api →

Workflows

Evidence Exchange

Securely exchange evidence between authorized client workspaces and partner systems.

  • Request evidence
  • Receive Evidence Packages
  • Retrieve Evidence Objects
Review Workflow

Review evidence without leaving your existing workflow while maintaining complete audit traceability.

  • Approve or reject evidence
  • Upload findings
  • Trigger human review
Remediation

Collaborate with clients through structured remediation workflows rather than email threads.

  • Open remediation requests
  • Track remediation status
  • Verify completed controls

Why firms integrate

Client
Email
Spreadsheet
Evidence Folder
Audit Report
Client Workspace
Partner API
Partner Workflow
Evidence Package
Audit / Assessment

The Partner API reduces manual evidence collection by connecting partner workflows directly to continuously generated compliance evidence.

Scoped, not shared

Access is per-partner API keys or OAuth, scoped to specific engagements and tenants. A partner can never read a workspace they are not authorized on. Rate limits are published per tier and sized for continuous evidence sync.

Request access → Try the live dashboard →

Built for regulated environments.

Least-privilege authorization
Immutable Evidence Objects
Human approval before regulatory decisions
Complete audit traceability

Platform roadmap

REST API
OAuth 2.1
Webhooks
OpenAPI Specification
Partner Sandbox
SDKs
Model Context Protocol (MCP)

The Partner API is the primary integration interface today. MCP support will extend the platform for trusted AI agents and enterprise automation without replacing the REST API.

Common questions

What can the Partner API do?

Request evidence from a client workspace, receive packaged evidence, approve or reject it, upload your own findings, request remediation, and trigger reviews — all scoped to engagements you are authorized on.

How is access controlled?

Per-partner API keys or OAuth, scoped to specific engagements and tenants. A partner can never read a workspace they are not authorized on.

Is there a rate limit?

Yes — documented per tier. The limits are sized for continuous evidence sync and published in the API reference.

When does it ship?

The Partner API opens to Founding Partners first, then generally as the cohort onboards. Request access to join the early group.