Bots
A bot is its own account with a protected BOT label. Server managers install it and approve exactly what it may do. It never acts as a person.
Bots with their own identity, "Sign in with PawTalk" for your site, and signed events for your servers - over a plain HTTPS + JSON API.
A bot is its own account with a protected BOT label. Server managers install it and approve exactly what it may do. It never acts as a person.
OAuth2 code flow for your website or app. People see what you ask for and approve it; you get a token for just that.
Get installs, removals and new messages pushed to your HTTPS endpoint, signed with your app's Ed25519 key so you can prove it came from us.
Server managers can create a webhook URL that posts into one channel - build notices, alerts, feeds - with a clear WEBHOOK label.
A token only reaches what its scopes allow - and a bot only reaches servers that installed it.
identity.readRead the bot identity.servers.readRead servers where the bot is a member.roles.readRead server roles for rank mapping.members.readRead a server member’s assigned roles.roles.writeAssign and remove roles below the bot’s highest role.channels.readRead channels the bot can access.messages.readRead message history in channels the bot can access.messages.writePost messages where the server has allowed the bot to speak.identifyRead the signed-in PawTalk identity.emailRead the account email address.servers.readRead servers the account belongs to.Server managers see this list when installing and can approve less. A bot never gets more than the server approved, and it can only manage roles below its own highest role.
bot.installedA server approved installation of this bot.bot.removedThis bot was removed from a server.message.createdA message was created in a server channel the bot can read.Privileged: presence updates, server member events and message content are off by default. Turn them on in your bot's settings when a feature really needs them - without message content, message.created tells you a message happened, not what it said.
members.read)email scopeAnything that speaks HTTPS and JSON - Node, Python, PHP, C#, Go, Rust. Your code runs on your own server; nothing runs inside PawTalk.
Use your bot token (ptk_…) or an OAuth2 token someone approved. Keep them on your server, never in a web page or app people can download.
Automating a person's account with their login, session or password is not allowed. Bots are bots.
No scraping, no scripts injected into the PawTalk app, no modified clients, and no collecting data a server didn't give you.
curl https://paw-talk.xyz/api/v1/me \
-H "Authorization: Bearer ptk_your_token_here"
Then list servers with GET /servers, their channels with GET /servers/{id}/channels, and post with POST /channels/{id}/messages.
Sign in with your PawTalk account, create an app, and give it a bot.
By building on PawTalk you agree to the Terms and Privacy Policy.
LEAVING PAWTALK
This address is outside PawTalk. Only continue if you recognise and trust where it leads.
PawTalk cannot check or control content once you leave this site.