Overview
Create a scoped external principal for selected ProductCatalog operations.
Prerequisites
Permissions required
Steps (5)
-
1
Create the Bridge principal
Open Bridge Credentials and create an external-system, service-account or approved application principal.
Tips
Validation
Success criteria
-
2
Select operations
Grant only the ProductCatalog operations the principal must call.
Tips
Validation
Success criteria
-
3
Set network and rate policy
Configure IP/CIDR restrictions, rate ceiling and expiry/state requirements.
Tips
Validation
Success criteria
-
4
Store the issued secret
Capture the displayed secret in the external system secure configuration.
Tips
Validation
Success criteria
-
5
Send a signed request
Call the Bridge operation path with a valid HMAC v2 request and verify the authorized response.
Tips
Validation
Success criteria
About this guide
ProductCatalog is a workspace-local catalogue authority for physical and digital products. Create products with canonical identity, SKU, pricing and lifecycle state, then extend them with type-specific attributes, media, options and option values.
Organize the catalogue with hierarchical categories and curated collections. Attach discounts, offers, loyalty programs, shipping promotions and referral programs directly to products or inherit them through categories and collections. Products can also retain normalized references to projects supplied by a compatible workspace project-catalogue provider.
ProductCatalog exposes governed integration contracts for trusted workspace apps and external systems. Handler and RCP calls use explicit per-application operation grants, ContextResolver exposes source-owned product context, EventBus publishes catalogue changes, and HMAC v2 Bridge credentials provide scoped external access with replay, rate, network, rotation and revocation controls.