Endpoint referencePolicies
Simulate a policy against a store's scripts (no changes)
POST
bearerAuthheader
AuthorizationBearer <token>API token created in Settings → API. Scopes are attached to the token; each operation lists its required scope in x-scope.
id*stringFormat
uuidorg_id?stringPartners only (orgs:manage): act on this child organization. May also be sent as org_id in JSON bodies.
Format
uuidapplication/json- body
store_id?stringRequired for organization-level policies
Format
uuidSimulation
application/json- response
policy_id?stringFormat
uuidstore_id?stringFormat
uuidwould_authorize?array<>would_block?array<>would_review?array<>unchanged?integercurl -X POST "https://example.com/policies/497f6eca-6276-4993-bfeb-53cbbbba6f08/simulate" \ -H "Content-Type: application/json" \ -d '{ "store_id": "0c1d2e3f-1111-4222-8333-444455556666" }'{ "policy_id": "d0e1f2a3-7777-4888-8999-000011112222", "store_id": "0c1d2e3f-1111-4222-8333-444455556666", "would_authorize": [ { "id": "b1c2d3e4-5555-4666-8777-888899990000", "src": "https://www.google-analytics.com/analytics.js", "type": "known_third", "category": "analytics", "status": "needs_review" } ], "would_block": [], "would_review": [], "unchanged": 17}