Skip to main content
POST
cURL

Authorizations

Authorization
string
header
required

An Invoice-AI API key sent as Authorization: Bearer inv_live_….

Create keys in Settings → API keys; the secret is shown once. Each key carries scopes, and every operation lists the scope it needs (x-required-scope):

  • business:read — Read your business profile, tax ID and bank details
  • clients:read — List and read your clients
  • clients:write — Create, update and archive clients
  • products:read — List and read products and prices
  • products:write — Create, update and archive products and prices
  • invoices:read — List and read invoices, including PDFs
  • invoices:write — Create, edit and delete drafts
  • invoices:finalize — Finalize invoices and void them
  • invoices:send — Email invoices to your clients
  • payments:write — Mark invoices as paid
  • webhooks:manage — Manage webhook endpoints

Keys cannot be created or revoked through the API, so a leaked key cannot mint more keys.

Headers

Idempotency-Key
string
required

A unique key per distinct operation (a UUID works), reused only when retrying that same request. Up to 255 characters; stored for 24 hours.

Maximum string length: 255
Example:

"6f1c2d9e-8a4b-4c3f-9e7d-2b5a1c8f4e30"

Path Parameters

id
string
required

The invoice, in_… or UUID.

Example:

"in_Pb2Xk7Mv4Qs9Lr1Wd6Tn3Fh8"

Body

application/json
paid_on
string

When payment was received: an ISO 8601 date or timestamp. Defaults to now.

Example:

"2026-09-29"

reference
string

Your payment reference (cheque number, bank transfer id), up to 200 characters. Recorded on the invoice.paid event.

Example:

"chk_123456"

Response

The paid invoice (without lines).

data
object
required

The paid invoice.