# Partner API changelog

## 1.0.0 — 2026-09-20

- Added Partner Organizations, role-based members, applications, environment-bound credentials, rotation, and revocation.
- Added clinic-approved installations and least-privilege scopes.
- Added OAuth client-credentials exchange, sandbox fixtures, context, appointments, idempotency, and rate limits.
- Added signed self-service webhooks with retry, delivery logs, secret rotation, and replay.
- Added usage logs, rate-limit consumption, production-access requests, OpenAPI, Postman, and starter TypeScript/Python/PHP SDKs.

OpenAPI remains at 3.1.0 until the documentation, validator, Postman, SDK, and contract-test toolchain proves OpenAPI 3.2 support end to end.
