openapi: 3.2.0 info: title: Bold Penguin Auth API version: '2026-10-02' description: 'GENERATED FROM DOCUMENTATION by API Evangelist on 2026-10-02: 20 operation(s) read from 16 public documentation page(s) (each operation names its page in x-source). This is not the provider''s published contract; Bold Penguin has published no machine-readable contract that the pipeline could find. Engine: local.' x-evidence-tiers: code-example: 11 documentation: 9 pages-with-code: 13 pages-read: 16 x-generated-from: documentation x-provenance: generated x-authored-by: API Evangelist x-generated: '2026-10-02' x-generator: generate-contract-from-docs.py x-engine: local x-sources: - https://developers.boldpenguin.com/docs/api/create_application_form - https://developers.boldpenguin.com/docs/api/get_latest_application_form - https://developers.boldpenguin.com/docs/api/get_consumer_application_form - https://developers.boldpenguin.com/docs/terminal/quote_start/authentication - https://developers.boldpenguin.com/docs/exchange/send_side/ss_authentication - https://developers.boldpenguin.com/docs/insurance_intelligence/market_intelligence - https://developers.boldpenguin.com/docs/api/authenticate - https://developers.boldpenguin.com/docs/api/clone_application_form - https://developers.boldpenguin.com/docs/api/get_attachments - https://developers.boldpenguin.com/docs/api/create_disposition - https://developers.boldpenguin.com/docs/api/receive_prospect - https://developers.boldpenguin.com/docs/api/update_quote_request - https://developers.boldpenguin.com/docs/api/send_prospect - https://developers.boldpenguin.com/docs/api/get_dispositions - https://developers.boldpenguin.com/docs/api/lend_app_form - https://developers.boldpenguin.com/docs/api/update_application_form servers: - url: https://partner-engine.boldpenguin.com security: - bearer: [] tags: - name: Auth paths: /auth/token: get: operationId: get_auth_token tags: - Auth summary: GET /auth/token x-source: https://developers.boldpenguin.com/docs/api/authenticate responses: '200': description: Success (shape read from the example response on the page) content: application/json: schema: $ref: '#/components/schemas/GetAuthTokenResponse' x-evidence: kind: code-example language: curl snippet: 'curl https://boldpenguin-auth.boldpenguin.com/auth/token \ -F grant_type = client_credentials \ -F client_id = < client_id > \ -F client_secret = < client_secret > Request Parameters ​ Form Data ​ grant_type Must be client_credentials Type: String Required: Yes client_id Must be your unique client_id provided to you by Bold Penguin Type: String Required: Yes client_secret Must be your unique clien' components: schemas: GetAuthTokenResponse: type: object properties: access_token: type: string token_type: type: string expires_in: type: integer refresh_token: type: string scope: type: string uid: type: string info: type: object properties: name: type: string email: type: - string - 'null' first_name: type: string last_name: type: string extra: type: object properties: raw_info: type: object properties: user_id: type: string tenant_id: type: string tenant_name: type: string primary_user_group_id: type: string user_group_ids: type: array items: type: string name: type: string email: type: - string - 'null' first_name: type: string last_name: type: string permissions: type: array items: type: string auth_uid: type: - string - 'null' completed_steps: type: array items: {} securitySchemes: bearer: type: http scheme: bearer