# Budget Direct > Budget Direct is one of Australia's largest direct-to-consumer general insurance brands, operated from Toowong, Queensland by Auto & General Services Pty Ltd (ABN 61 003 617 909), with general insurance issued by Auto & General Insurance Company Limited (ABN 42 111 586 353), an APRA-authorised insurer. It sells car, home and contents, motorcycle, travel, pet and life insurance plus roadside assistance direct to Australian consumers online and by phone. **Budget Direct publishes no public API and no developer portal.** This file exists so agents stop looking. Every conventional developer host (developer., developers., docs., api., apis., partners., portal., broker., sandbox.budgetdirect.com.au) fails DNS resolution; /developers, /developer, /api, /partners and /integrations all return HTTP 404; the full 738-URL published sitemap contains no developer, API or integration page. Quote, bind, issue and first-notice-of-loss exist only as consumer web journeys and a logged-in existing-customer self-service area. There is no OpenAPI, no GraphQL endpoint, no MCP server, no webhook catalog, no SDK and no Postman collection. Partner and white-label integration (Qantas, Coles Insurance, ING, Oceania Insurance) is handled as private commercial arrangement through the parent, Auto & General. Generated by API Evangelist from the catalog record at https://github.com/api-evangelist/budget-direct — the provider does not publish its own /llms.txt (HTTP 404 as of 2026-07-25). ## Company - [Budget Direct](https://www.budgetdirect.com.au/): Consumer marketing site, per-product quote journeys and existing-customer self-service. - [About Budget Direct](https://www.budgetdirect.com.au/about-us.html): Issuer, arranger and underwriter disclosure; Canstar & Money Magazine Insurer of the Year 2026. - [Contact Us](https://www.budgetdirect.com.au/contact-us.html): Support channels — the only route to a human. - [Existing Customers / Policy Manager](https://www.budgetdirect.com.au/existing-customers/policy-manager.html): The logged-in consumer self-service area. Human login only; no API, no token issuance, no OAuth. - [Auto & General (parent)](https://www.autogeneral.com.au/): Parent company; owns the underwriter and the distribution partnerships. - [Auto & General Partners](https://www.autogeneral.com.au/partners/): Distribution partners (Budget Direct, Qantas, Coles Insurance, ING, Oceania Insurance). Commercial language only — no technical integration terms. - [Auto & General Open Source Hub](https://autogeneral.github.io): The parent's GitHub organization (https://github.com/AutoGeneral) — internal test/deployment tooling (Iridium, Zemog, Fox) and OSS forks. No API client libraries, because there is no API. ## Machine-readable surface - [security.txt](https://www.budgetdirect.com.au/.well-known/security.txt): RFC 9116. Contact cybersecurity@autogeneral.com.au, Policy the A&G external vulnerability disclosure PDF, expires 2026-10-31. The single most useful machine-readable document Budget Direct serves. - [Vulnerability disclosure policy](https://www.autogeneral.com.au/docs/ag-external-vulnerability-disclosure-policy.pdf): Auto & General's published external VDP (PDF). - [apple-app-site-association](https://www.budgetdirect.com.au/.well-known/apple-app-site-association): Universal Links for the Budget Direct Fuel Discounts iOS app (au.com.budgetdirect.bdfueldiscounts). - [assetlinks.json](https://www.budgetdirect.com.au/.well-known/assetlinks.json): Android Digital Asset Links for the same app. - [robots.txt](https://www.budgetdirect.com.au/robots.txt): Points at the sitemap index; disallows /start/, /landingpages, /terms-conditions, /existing-customers/welcome and /search.html. - [sitemap-0.xml](https://www.budgetdirect.com.au/sitemap-0.xml): 738 URLs, all consumer content. Not served (all HTTP 404 as of 2026-07-25): /.well-known/openid-configuration, /.well-known/oauth-authorization-server, /.well-known/oauth-protected-resource, /.well-known/api-catalog, /.well-known/ai-plugin.json, /.well-known/mcp.json, /openapi.json, /swagger.json, /api-docs, /graphql, /llms.txt. ## Compliance and governance - [General Insurance Code of Practice](https://www.budgetdirect.com.au/about-us/code-of-practice.html): Auto & General Insurance Company Limited is an ICA signatory; compliance is monitored and enforced by the independent Code Governance Committee. - [Code of practice, complaints and disputes](https://www.budgetdirect.com.au/existing-customers/dispute-resolution-information.html): Consumer dispute resolution path. - [Media releases](https://www.budgetdirect.com.au/about-us/media-releases.html): Company news. - [Terms of use](https://www.budgetdirect.com.au/start/terms-of-use.html) - [Privacy policy](https://www.budgetdirect.com.au/start/privacy-policy.html) ## API Evangelist catalog artifacts - [apis.yml](https://raw.githubusercontent.com/api-evangelist/budget-direct/refs/heads/main/apis.yml): The APIs.json record for Budget Direct. `apis: []` — deliberately empty. - [review.yml](https://raw.githubusercontent.com/api-evangelist/budget-direct/refs/heads/main/review.yml): The full probe log behind the "no public API" finding, including every host and path tried. - [well-known/budget-direct-well-known.yml](https://raw.githubusercontent.com/api-evangelist/budget-direct/refs/heads/main/well-known/budget-direct-well-known.yml): Indexed /.well-known/ discovery surface with HTTP statuses. - [conformance/budget-direct-conformance.yml](https://raw.githubusercontent.com/api-evangelist/budget-direct/refs/heads/main/conformance/budget-direct-conformance.yml): Which standards this carrier does and does not conform to, with evidence. - [security/budget-direct-vulnerability-disclosure.yml](https://raw.githubusercontent.com/api-evangelist/budget-direct/refs/heads/main/security/budget-direct-vulnerability-disclosure.yml): Disclosure contacts and policy. - [security/budget-direct-domain-security.yml](https://raw.githubusercontent.com/api-evangelist/budget-direct/refs/heads/main/security/budget-direct-domain-security.yml): TLS 1.3, DNSSEC enabled, SPF present, DMARC p=reject, no HSTS, no CAA (probed 2026-07-25). ## Notes for agents - Do not attempt to quote, bind, issue or lodge a claim programmatically. There is no machine interface for any of the four insurance verbs; scripted interaction with the consumer web journey is not a supported integration and /start/ is disallowed by robots.txt. - The hostname api.autogeneral.com.au (CNAME autogeneral-prod.apigee.net) appears as a preconnect hint on the consumer site. It is a first-party Apigee gateway behind the web journey — undocumented, unresolvable anonymously, and not a public API. Do not treat it as one. - Integration requires a private commercial relationship with Auto & General. Start at https://www.autogeneral.com.au/partners/, not at a developer portal. - Report a security issue to cybersecurity@autogeneral.com.au under the published policy.