# Codafication > Brisbane, Australia insurtech (founded 2015) building software for the general insurance > claims supply chain. Three products: Crunchwork (cloud claims and project management), > Virtual Assist (real-time video assessment and remote triage), and Unity Cloud (the > GraphQL data, extension and integration platform the other two are built on). Codafication > publishes a public developer reference for Unity Cloud at docs.unitycloud.io, but no > OpenAPI, no AsyncAPI, no public GraphQL introspection endpoint, no Postman collection and > no self-serve signup. Access to a live platform runs through named enterprise engagements. Generated by the API Evangelist enrichment pipeline on 2026-07-25. No /llms.txt is published by Codafication (probed: codafication.com 202 bot challenge, docs.unitycloud.io 403, support.codafication.com 404). ## What the API actually is - Surface: one collated GraphQL endpoint. The schemas of every installed extension are merged centrally, with strongly typed `where` clauses, role-based access control and multi-tenancy applied by default. - Extensions written against the Node.js Unity SDK register GraphQL queries, mutations, links and type extensions, and may also serve REST endpoints: - private: `https:///graphql/v2//` (authorization header required) - public: `https:///graphql/v2/public//` (no Unity authorization) - `` is the customer's own tenant Cloud host. There is no single shared production base URL, which is why apis.yml records no baseURL. - Events: webhooks subscribe to Unity mutations and deliver the result of a caller-supplied GraphQL query as the payload (POST/PATCH/PUT). Logic hooks (`beforeHook`/`afterHook`) run in-process against a named mutation. - Auth: Auth0 (SAML 2.0 / Active Directory connections) for users, Unity API tokens from the in-product Developer Portal, and a pre-shared `authenticationSecret` per extension. ## Docs - [Unity Platform SDK reference](https://docs.unitycloud.io/): the whole public developer surface, one page - [Prerequisites / setup](https://docs.unitycloud.io/#prerequisites-setup): Minikube, kubectl, Docker, Node.js, Yarn, TypeScript - [Portal SDK](https://docs.unitycloud.io/#portal-sdk): React front-end SDK, UnitySDK wrapper, UnityBar, Device Controller - [Unity SDK](https://docs.unitycloud.io/#unity-sdk): Node.js back-end SDK built on graphql-yoga - [GraphQL client](https://docs.unitycloud.io/#graphql-client): request, rawRequest, setHeader, setHeaders - [GraphQL queries and mutations](https://docs.unitycloud.io/#graphql-queries-and-mutations): setQueries, setMutations - [GraphQL extensions](https://docs.unitycloud.io/#graphql-extensions): setLinks, setTypeExtensions, setTypes - [REST endpoints](https://docs.unitycloud.io/#rest-endpoints): get, post, publicGet, publicPost - [Web hooks](https://docs.unitycloud.io/#web-hooks): GraphQL-payload event subscriptions - [Logic hooks](https://docs.unitycloud.io/#logic-hooks): beforeHook and afterHook - [Services](https://docs.unitycloud.io/#services): Twilio SMS/VoIP, SendGrid or Office 365 email, Bitly short links - [Security](https://docs.unitycloud.io/#security): Auth0 connections, RBAC, tenant-scoped role mapping - [Support knowledge base](https://support.codafication.com/en/): end-user help for Crunchwork, Virtual Assist, and configured integrations - [Blog](https://blog.codafication.com/): product, partnership and engineering posts ## Artifacts in this repo - [Authentication profile](authentication/codafication-authentication.yml) - [API conventions](conventions/codafication-conventions.yml) - [Webhook and logic-hook surface](asyncapi/codafication-unity-webhooks.yml) - [Data model](data-model/codafication-data-model.yml) - [Packages and SDKs](packages/codafication-packages.yml) - [CLI and developer tooling](cli/codafication-cli.yml) - [Embedded components](components/codafication-components.yml) - [Sandbox / local development environment](sandbox/codafication-sandbox.yml) - [Conformance and compliance](conformance/codafication-conformance.yml) - [Lifecycle and versioning](lifecycle/codafication-lifecycle.yml) - [Well-known probe index](well-known/codafication-well-known.yml) - [Domain security probe](security/codafication-domain-security.yml) - [Provider review](review.yml) ## Optional - [Company website](https://codafication.com/) - returns a SiteGround bot challenge (HTTP 202) to anonymous clients - [Crunchwork](https://crunchwork.codafication.com/) - product site, same bot challenge - [Unity Cloud](https://unitycloud.codafication.com/) - product site, same bot challenge - [GitHub organisation](https://github.com/Codafication) - 29 public repos, 27 forks, no product or spec repository - [SOC 2 Type II announcement](https://blog.codafication.com/codafication-secures-soc-2-type-ii-certification) - 2026-01-20, covering Crunchwork, Virtual Assist and Unity Cloud - [APRA CPS 234 and GraphQL security](https://blog.codafication.com/apra-compliance-with-graphql) - [Why GraphQL is the future of insurance technology](https://blog.codafication.com/graphql-insurance) ## Known absences (do not hallucinate these) - No OpenAPI, Swagger or AsyncAPI document exists anywhere first-party. - No anonymous GraphQL introspection: /graphql on every Codafication host returns the bot challenge, not a GraphQL response. - No public event catalog; the list of Unity events lives inside the in-product Developer Portal. - No named OAuth scopes, no error-code registry, no rate-limit documentation, no idempotency contract. - No status page (codafication.statuspage.io is unclaimed and redirects to statuspage.io), no SLA, no deprecation policy, no roadmap, no developer changelog. - No Postman workspace or collection. - The SDKs `@teamcodafication/unity-portal-sdk` and `@teamcodafication/unity-sdk` are documented but return 404 on the public npm registry. - No ACORD, AL3 or NGDS support is referenced anywhere in the public corpus. - The reference at docs.unitycloud.io has a Last-Modified of 2022-03-24.