# Contensis > Contensis is an enterprise content management system and digital experience platform > built by Zengenti Ltd (UK). It is API-first: content authored in Contensis is retrieved > through a read-only HTTP Delivery API, managed through an OAuth 2.0 HTTP Management API, > and transformed on the fly through an Image API. First-party JavaScript/TypeScript and > .NET clients wrap both HTTP APIs, and a first-party CLI drives the whole platform from a > terminal or CI job. Generated by API Evangelist on 2026-09-06 from the Contensis public developer surface. Contensis does not serve an llms.txt of its own — https://www.contensis.com/llms.txt returned 404 on 2026-09-06. This file is API Evangelist's generation, not a provider document. Contensis does, however, publish its full documentation as markdown for AI tools at https://github.com/contensis/contensis-docs, which is the better primary source. ## What you need to know before calling anything - There is no shared api.contensis.com. Every customer has their own Contensis environment, and the API host is that environment: https://cms-{alias}.cloud.contensis.com (staging: https://staging-{alias}.cloud.contensis.com). You cannot call Contensis without knowing a tenant alias. - Two namespaces: /api/delivery (read) and /api/management (read + write). - Two different credentials. Delivery takes one environment-wide access token in the Authorization header, unscoped, with no documented expiry. Management takes an OAuth 2.0 client_credentials bearer token from https://cms-{alias}.cloud.contensis.com/authenticate/connect/token, scoped, 3600 seconds. - Contensis publishes no OpenAPI, no GraphQL schema, no AsyncAPI and no MCP server. - Contensis publishes no rate limits and returns no rate-limit headers. Pace yourself conservatively; there is no documented 429 to back off from. - Writes are not idempotent. There is no Idempotency-Key. A retried entry create makes a second entry. - Deletes are reversible by default: a deleted entry goes to a recycle bin and can be restored for up to 90 days. `permanent=true` bypasses the recycle bin and cannot be undone. Never set it on an agent's behalf. ## APIs - [Delivery API (HTTP)](https://www.contensis.com/help-and-docs/apis/delivery-http): read-only content retrieval — projects, content types, entries, taxonomy, navigation nodes, search. Supports pageIndex/pageSize paging, `fields` sparse selection, `order` sorting, `linkDepth` and `fieldLinkDepths` link expansion (max depth 10), `language` variation selection and `versionStatus` published-vs-latest selection. - [Delivery API (JavaScript)](https://www.contensis.com/help-and-docs/apis/delivery-js) - [Delivery API (.NET)](https://www.contensis.com/help-and-docs/apis/delivery-dotnet) - [Management API (HTTP)](https://www.contensis.com/help-and-docs/apis/management-http): full CRUD over entries, content types, components, nodes, assets, projects, domains, certificates, roles, groups, users, blocks, renderers, proxies and webhook subscriptions. Publication is a workflow transition, not a flag. - [Management API (JavaScript)](https://www.contensis.com/help-and-docs/apis/management-js) - [Management API (.NET)](https://www.contensis.com/help-and-docs/apis/management-dotnet) - [Image API](https://www.contensis.com/community/blog/developing-with-the-contensis-image-api): real-time image resize, crop, format conversion and quality adjustment by URL query parameter, as part of the Delivery API. ## Authentication - [Delivery authentication](https://www.contensis.com/help-and-docs/apis/delivery-http/security/authentication) - [Management authentication](https://www.contensis.com/help-and-docs/apis/management-http/security/authentication) - [Management OAuth scopes](https://www.contensis.com/help-and-docs/apis/management-http/security/scopes): Project_Read, Entry_Read, Entry_Write, Entry_Delete (and ContentType_Read, which appears in the docs' own example but not in the table). ## Events - [Webhooks overview](https://www.contensis.com/help-and-docs/guides/integrating-with-other-platforms/webhooks/webhooks-overview) - [Topics and events](https://www.contensis.com/help-and-docs/apis/management-http/events/webhook-subscriptions/topics-and-events): entry, asset, form, contentType, component, node, project and user resource types, with created / updated / deleted / published / unpublished / archived / unarchived / restored plus workflow state and workflow event topics. - Delivery: 10-second timeout, then nine retries over 24 hours with exponential backoff. Receiver authentication is a user-defined secret header — there is no payload signature. ## Errors - [Error model](https://www.contensis.com/help-and-docs/apis/management-http/key-concepts/errors): `{ logId, message, data, type }`. Not RFC 9457. There is no machine-readable error code — `type` is always the literal "error", so branch on `data`, not on `message`. ## Clients and tooling - [contensis-delivery-api](https://www.npmjs.com/package/contensis-delivery-api) (npm) - [contensis-management-api](https://www.npmjs.com/package/contensis-management-api) (npm) - [Zengenti.Contensis.Delivery](https://www.nuget.org/packages/Zengenti.Contensis.Delivery) (NuGet) - [Zengenti.Contensis.Management](https://www.nuget.org/packages/Zengenti.Contensis.Management) (NuGet) - [contensis-cli](https://github.com/contensis/cli) — shell and CLI; brew, choco, npm, Docker - [@zengenti/contensis-react-base](https://www.npmjs.com/package/@zengenti/contensis-react-base) — React foundation - [Canvas renderers](https://github.com/contensis/canvas) — React, HTML and Markdown output - [GitHub organisation](https://github.com/contensis) ## For agents specifically - [Contensis documentation as markdown](https://github.com/contensis/contensis-docs) — the full help-and-docs corpus, synced from contensis.com and indexed by Context7. This is the single best machine-readable source for Contensis, and it is provider-published. - [HE Content Skills](https://github.com/contensis/he-content-skills) — five Agent Skills published by Contensis for higher-education web content teams (alt text, GEO audit, meta descriptions, refine-for-web, staleness audit), plus Claude Code subagents. Note that none of them teach an agent to call the Contensis API. - No MCP server. No A2A agent card. No /.well-known/ai-plugin.json. ## Operations - [Status page](https://status.zengenti.cloud/) — live, with an "APIs" component, a JSON summary at /api/v2/summary.json and an Atom history feed. - [Security and disclosure policy](https://www.contensis.com/security) — also referenced from https://www.contensis.com/.well-known/security.txt. - [What's new](https://www.contensis.com/help-and-docs/whats-new) — current product line 17.2. - [Pricing](https://www.contensis.com/pricing) — contact sales; no published prices or tiers. ## Company - [contensis.com](https://www.contensis.com/) — the product - [zengenti.com](https://www.zengenti.com/) — Zengenti Ltd, the company that builds it. ISO 9001:2015 and ISO/IEC 27001:2022 certified. - [Community and blog](https://www.contensis.com/community/blog) - [Support](https://www.contensis.com/support)