{"schemaVersion":"mappls.capability-qualification.v1","id":"workmate--rest--qualification","matrixCellId":"workmate--rest","product":{"slug":"workmate","name":"Workmate","summary":"Workforce automation for people, clients, tasks, attendance, proof, and live operations.","category":"Operations","accent":"#3478f6"},"platform":{"slug":"rest","name":"REST","headline":"Put Mappls behind a stable service boundary in any stack."},"status":"ready-to-qualify","stateModel":"stateful","integrationLane":"trusted-service","decision":{"availability":"listed","evidenceStatus":"listed-with-exact-evidence","exactEvidence":[{"kind":"source-guide","fidelity":"exact-source","slug":"mapmyindia-workmate-apis","title":"Mappls by MapmyIndia-Workmate-Apis","href":"/reference/mapmyindia-workmate-apis"},{"kind":"source-guide","fidelity":"exact-source","slug":"mappls-ai-apis","title":"MAPPLS AI / ML APIs","href":"/reference/mappls-ai-apis"},{"kind":"api","fidelity":"exact-product-platform","slug":"workmate-get-clients-to-get-all-your-client-details","title":"To get all your client details","href":"/api-reference/workmate-get-clients-to-get-all-your-client-details"},{"kind":"api","fidelity":"exact-product-platform","slug":"workmate-post-clients-to-create-new-client","title":"To create new client","href":"/api-reference/workmate-post-clients-to-create-new-client"},{"kind":"api","fidelity":"exact-product-platform","slug":"workmate-get-configurations-categories-to-get-the-list-of-client-category-in-an-account","title":"To get the list of client category in an account","href":"/api-reference/workmate-get-configurations-categories-to-get-the-list-of-client-category-in-an-account"},{"kind":"api","fidelity":"exact-product-platform","slug":"workmate-get-configurations-forms-to-get-the-form-s-id-and-their-details-from-your-account","title":"To get the form's Id and their details from your account.","href":"/api-reference/workmate-get-configurations-forms-to-get-the-form-s-id-and-their-details-from-your-account"},{"kind":"api","fidelity":"exact-product-platform","slug":"workmate-get-reports-attendances-get-users-attendance-details-with-travelled-distance","title":"Get users attendance details with travelled distance.","href":"/api-reference/workmate-get-reports-attendances-get-users-attendance-details-with-travelled-distance"},{"kind":"api","fidelity":"exact-product-platform","slug":"workmate-get-reports-forms-formid-to-get-form-based-check-in-out-details","title":"To get form based check in/out details","href":"/api-reference/workmate-get-reports-forms-formid-to-get-form-based-check-in-out-details"},{"kind":"api","fidelity":"exact-product-platform","slug":"workmate-get-reports-movements-userid-get-users-movement-details","title":"Get users movement details","href":"/api-reference/workmate-get-reports-movements-userid-get-users-movement-details"},{"kind":"api","fidelity":"exact-product-platform","slug":"workmate-get-tasklists-to-get-the-task-list-details","title":"To get the task list details.","href":"/api-reference/workmate-get-tasklists-to-get-the-task-list-details"},{"kind":"api","fidelity":"exact-product-platform","slug":"workmate-get-tasks-to-get-the-list-of-tasks-and-their-details","title":"To get the list of tasks and their details","href":"/api-reference/workmate-get-tasks-to-get-the-list-of-tasks-and-their-details"},{"kind":"api","fidelity":"exact-product-platform","slug":"workmate-post-tasks-to-create-new-task","title":"To create new Task","href":"/api-reference/workmate-post-tasks-to-create-new-task"},{"kind":"api","fidelity":"exact-product-platform","slug":"workmate-get-tasks-taskid-to-get-the-task-details-for-the-given-task-id","title":"To get the task details for the given task id.","href":"/api-reference/workmate-get-tasks-taskid-to-get-the-task-details-for-the-given-task-id"},{"kind":"api","fidelity":"exact-product-platform","slug":"workmate-put-tasks-taskid-to-update-the-task-description-status","title":"To update the task description & status.","href":"/api-reference/workmate-put-tasks-taskid-to-update-the-task-description-status"},{"kind":"api","fidelity":"exact-product-platform","slug":"workmate-get-users-to-get-all-the-user-details-which-belongs-to-your-organization","title":"To get all the user details which belongs to your organization.","href":"/api-reference/workmate-get-users-to-get-all-the-user-details-which-belongs-to-your-organization"},{"kind":"tutorial","fidelity":"exact-product-platform","slug":"workmate-task-lifecycle","title":"Automate a complete Workmate task lifecycle","href":"/tutorials/workmate-task-lifecycle"},{"kind":"tutorial","fidelity":"exact-product-platform","slug":"webhook-reliability","title":"Consume Mappls events exactly once in effect","href":"/tutorials/webhook-reliability"},{"kind":"tutorial","fidelity":"exact-product-platform","slug":"workmate-proof-review","title":"Build proof review and rework for field jobs","href":"/tutorials/workmate-proof-review"}],"supportingEvidence":[{"kind":"quickstart","fidelity":"platform-adjacent","slug":"rest-api","title":"Your first trusted Mappls request","href":"/quickstart/rest-api"},{"kind":"starter-kit","fidelity":"platform-adjacent","slug":"rest-api-starter","title":"Trusted REST service starter","href":"/starter-kits/rest-api-starter"},{"kind":"sample-app","fidelity":"product-adjacent","slug":"grid-restoration-desk","title":"Grid Restoration Desk","href":"/samples/grid-restoration-desk"},{"kind":"sample-app","fidelity":"product-adjacent","slug":"airside-turnaround-desk","title":"Airside Turnaround Desk","href":"/samples/airside-turnaround-desk"},{"kind":"sample-app","fidelity":"product-adjacent","slug":"field-service","title":"Field Service Console","href":"/samples/field-service"},{"kind":"journey","fidelity":"product-adjacent","slug":"field-service-task","title":"Field-service task lifecycle","href":"/journeys/field-service-task"}],"boundary":"Listed means this product names the platform in the canonical catalog. Source evidence, repository activity, fixtures, tutorials, and successful builds still do not prove package availability, account entitlement, runtime compatibility, region, quota, support, or production approval."},"authenticationCandidates":[{"slug":"workmate-oauth","title":"Workmate workforce APIs","runtime":"trusted-server","generation":"Workmate source generation","visibility":"selection-required","evidenceBoundary":"The public Workmate contracts preserve OAuth bearer evidence, but the company-issued organization, user, host, scope, and lifecycle contract is authoritative.","href":"/authentication#workmate-oauth"}],"identityLock":["Product and platform decision ID","Account and environment reference","Region and data-residency decision","Approved host/path and API generation","Server workload and egress identity","Secret-provider key version—not its value","Source/distribution fingerprint and release owner","Quota, support, incident, rollback, and retirement owners"],"scenarios":[{"id":"clean-build","title":"Clean build and identity lock","purpose":"Prove the selected source, distribution, toolchain, and runtime identity from a clean environment.","expectedEvidence":"Checksums, dependency lock, build log, runtime identity, and exact evidence links agree without workstation-only state.","recovery":"Stop qualification, reconcile the exact distribution or contract, and rebuild from a clean environment."},{"id":"fixture-success","title":"Deterministic fixture success","purpose":"Exercise the application adapter without credentials or provider traffic.","expectedEvidence":"The fixture produces the documented application contract and retains source identity plus state ownership.","recovery":"Fix the application boundary before requesting account access; a live call must not compensate for an unproven adapter."},{"id":"authentication-denied","title":"Missing, denied, expired, and revoked access","purpose":"Prove least-privilege failure without logging, reflecting, or weakening credential controls.","expectedEvidence":"Every access failure is classified, redacted, bounded, and routes to entitlement or credential reconciliation.","recovery":"Stop retries, preserve only safe request evidence, and reconcile the issued account contract independently."},{"id":"quota-unavailable","title":"Quota, timeout, offline, and service unavailability","purpose":"Prove bounded retry, fallback, and user-visible degradation for the exact operation safety class.","expectedEvidence":"Retry-After is honored where present; uncertain state changes never become blind retries.","recovery":"Use bounded backoff for safe reads and reconcile state-changing unknown outcomes before replay."},{"id":"upgrade-rollback","title":"Upgrade, downgrade, and rollback","purpose":"Prove that source, SDK, wrapper, schema, and runtime changes are independently reversible.","expectedEvidence":"Compatibility evidence names both versions, acceptance results, rollback trigger, and retained data/state behavior.","recovery":"Freeze rollout, restore the last qualified artifact, and reopen source and entitlement selection."},{"id":"idempotent-replay","title":"Idempotent command replay","purpose":"Repeat one stable command identity after a committed or uncertain result.","expectedEvidence":"The aggregate version and application event identity do not duplicate.","recovery":"Reconcile by stable business and provider identity before any new command."},{"id":"stale-version","title":"Stale version and concurrent actor","purpose":"Prevent an older actor or callback from overwriting newer durable truth.","expectedEvidence":"The stale transition is rejected without state mutation or event emission.","recovery":"Reload the current aggregate, re-evaluate policy, and require a new attributable decision."},{"id":"unknown-outcome","title":"Unknown provider outcome","purpose":"Separate timeout from failure and preserve a recoverable pending state.","expectedEvidence":"The application records the attempt, reconciles provider truth, and completes or retries without duplication.","recovery":"Do not infer success or failure; reconcile using the exact issued operation and durable identity."},{"id":"restart-recovery","title":"Restart and delayed evidence","purpose":"Recover application-owned state after process restart and reject late or superseded callbacks.","expectedEvidence":"The journey resumes from durable records and preserves generation, actor, and event ordering.","recovery":"Rebuild the read model from immutable application evidence and quarantine ambiguous callbacks."}],"phases":[{"id":"select-authority","title":"Lock source and product authority","owner":"Product owner + application technical owner","state":"actionable","objective":"Resolve the exact product, platform, source, distribution, generation, account, region, and owner before code or access is approved.","activities":["Review exact evidence separately from adjacent learning material.","Record every unresolved package, endpoint, callback, entitlement, and version question.","Keep not-listed and selection-required decisions blocked until an attributable owner supplies exact evidence."],"exitEvidence":["Immutable product-platform decision","Exact source/distribution identities and fingerprints","Named product, security, application, and release owners"],"blockedBy":[]},{"id":"lock-runtime","title":"Lock runtime and authentication","owner":"Application owner + security","state":"actionable","objective":"Bind the runtime identity to one authentication generation and least-privilege placement without accepting a credential value.","activities":["Record the runtime identity fields for this integration lane.","Choose one issued authentication path and document forbidden placement.","Define non-production restrictions, rotation, redaction, and incident ownership."],"exitEvidence":["Runtime compatibility decision","Credential class and restriction record","Secret/public-value placement review"],"blockedBy":[]},{"id":"prove-fixture","title":"Prove the application contract offline","owner":"Application team","state":"actionable","objective":"Exercise a deterministic adapter and every application-owned invariant before provider access.","activities":["Run the clean-build and fixture-success scenarios.","Normalize provider-shaped data at the adapter edge and keep opaque objects out of durable state.","Prove denial, quota, unavailable, upgrade, and rollback behavior with fixtures."],"exitEvidence":["Fixture results tied to the source lock","Application contract/schema","Failure and rollback evidence"],"blockedBy":[]},{"id":"qualify-nonproduction","title":"Qualify issued non-production access","owner":"Product owner + application team","state":"external-evidence-required","objective":"Run the smallest read or explicitly approved test journey against an issued non-production account without exporting secrets or sensitive payloads.","activities":["Confirm account, entitlement, host, region, quota, and exact operation/distribution.","Capture credential-free conformance results and safe request identities.","Compare live shape and failure classification to the locked application contract."],"exitEvidence":["Signed or attributable product-owner decision","Credential-free conformance report","Account/region/quota/entitlement reference","Observed compatibility and divergence record"],"blockedBy":["Issued non-production account and approved provider contract are external requirements."]},{"id":"exercise-journey","title":"Exercise lifecycle and hostile paths","owner":"Application team + operations","state":"external-evidence-required","objective":"Prove complete success, denial, degradation, recovery, restart, and rollback behavior at the integration's true state depth.","activities":["Execute every published qualification scenario.","For hybrid/stateful work, prove replay, stale-version, unknown-outcome, and restart recovery.","Verify telemetry, quota alarms, support evidence, cleanup, and rollback."],"exitEvidence":["Scenario-by-scenario result ledger","State/reconciliation evidence where applicable","Alert, runbook, support, cleanup, and rollback evidence"],"blockedBy":["Operational telemetry and provider-degradation exercises require an approved environment."]},{"id":"approve-release","title":"Independent release and deployment","owner":"Independent security + operations + product release owners","state":"external-evidence-required","objective":"Freeze the qualified artifact and collect independent authority without allowing developer evidence to self-approve production.","activities":["Attach exact artifacts to the governed release workflow.","Review security/privacy, product conformance, operations, quota, regional, legal, and rollback evidence.","Use progressive deployment and independently reconcile production health."],"exitEvidence":["Immutable release artifact and evidence digests","Independent approvals","Progressive deployment, rollback, and post-release reconciliation evidence"],"blockedBy":["This catalog never grants entitlement, support, production release, or deployment authority."]}],"releaseEvidence":["Exact source, package/distribution, contract generation, and runtime identity","Issued account, entitlement, region, quota, and credential-class reference without secret values","Clean build, fixture, non-production conformance, hostile-path, upgrade, and rollback results","Security, privacy, accessibility, operational, legal/content, and product-owner decisions","Immutable release artifact digest, progressive deployment evidence, and independent post-release reconciliation"],"handoff":{"websitePath":"/platforms/qualify?product=workmate&platform=rest","apiPath":"/api/capability-qualifications?product=workmate&platform=rest","downloadPath":"/api/capability-qualifications?product=workmate&platform=rest&download=1","matrixPath":"/platforms/matrix?product=workmate&platform=rest","productPath":"/docs/workmate","platformPath":"/platforms/rest"},"safety":{"providerCalls":0,"credentialsAccepted":false,"providerPayloadsAccepted":false,"writesExposed":false,"productionApprovalGranted":false}}