# Oracle CrowdTwist Loyalty and Engagement > Customer loyalty and engagement platform. Founded in New York City in 2009 (Techstars), > acquired by Oracle in March 2019 and sold as Oracle CrowdTwist Loyalty and Engagement within > Oracle CX Marketing. Brands use it to run multi-channel loyalty programs that award points for > purchases, activities, social sharing and referrals, and to redeem those points for rewards. > The platform exposes a REST/JSON API for members, activities, rewards, redemptions, coupons, > badges, points expiration and point-of-sale commerce, plus an outbound "Data Push" event feed. Generated by API Evangelist on 2026-08-13 from the provider's own public documentation. Oracle publishes no llms.txt for this product (probed; 301/302 on every host). ## What an agent needs to know first - There is **no OpenAPI, Swagger, GraphQL or AsyncAPI document** for this API. The only machine-readable contract Oracle publishes is a Postman v2.1 collection covering 14 of roughly 36 documented operations, last updated 2021-10-19. - **Every host is templated per customer**: `https://{environment}api{client_id}.crowdtwist.com` for the loyalty API and `https://{environment}pos{client_id}.crowdtwist.com` for commerce. `{client_id}` is a CrowdTwist-issued number; `{environment}` is empty for US production or one of `sb-`, `sb2-`, `de-`, `us2-`. - **Versioning is per resource, not global.** `/v2`, `/v2.1` and `/v2.2` are all current at once. - **Auth is an API key**, sent as `?api_key=` or as `X-CT-Authorization: CTApiKey `, with optional HMAC-SHA-256 signing (`CTApiV2Auth :` plus `X-CT-Timestamp`, 15-minute replay window). No OAuth, no OIDC, no scopes. - **`id_type` is the trap.** Most user endpoints accept email, username, third_party_id, mobile_phone_number, facebook/twitter/instagram IDs or the CrowdTwist ID; omitting `id_type` silently means "CrowdTwist ID". - **There is no self-service anything.** No public sign-up, no sandbox you can request online, no published price. Keys and environments come from an Oracle account team. ## Documentation - [Developer Help Center](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/): entry point for the API reference - [Getting Started](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/GettingStarted.html): the nine endpoints Oracle recommends starting with - [Endpoint URL Environments](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/EndpointURLEnvironments.html): the host pattern for every environment - [HMAC Authentication](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/HMACAuthentication.html): signature construction - [Mobile API Authentication](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/MobileAPIAuthentication.html): end-user session tokens - [API Best Practices](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/CrowdTwistAPIBestPractices.html): compatibility policy, TLS, failover - [Starter Kit (Postman)](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/CrowdTwistStarterKit.htm): downloadable collection + environment - [Releases](https://docs.oracle.com/en/industries/food-beverage/crowdtwist-loyalty-engagement/releases.html): dated monthly release notes, 2022-11 to 2026-06 - [User Help Center](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-user/): product/administration docs ## Members - [User Create](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/UserCreate.html): POST /v2/users - [User Profile](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/UserProfile.html): GET /v2/users/{user_id} - [User Update](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/UserUpdate.html): PUT /v2/users/{user_id} - [User Delete](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/UserDelete.html): DELETE /v2/users/{user_id} - [User Formatting Rules](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/UserFormattingRules.html): field regexes - [Language Codes](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/LanguageCodes.html): accepted lang_pref values - [Sign In](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/UserAuthenticationSignIn.html) / [Sign Out](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/UserAuthenticationSignOut.html): legacy program-hosted SSO, excluded from HMAC ## Activities and points - [Activities](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/Activities.html): GET /v2/activities - [Activities – Extended](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/Activities-Extended21.html): GET /v2.1/activities/extended (paginated) - [User Activity Credit](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/UserActivityCredit.html): POST /v2/users/{user_id}/activities — award points - [User Activities](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/UserActivities.html): GET /v2/users/{user_id}/activities - [User Activity History](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/UserActivityHistory21.html): GET /v2.1/users/{user_id}/activity_history - [User Activity History – Extended](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/UserActivityHistory-Extended21.html) - [Points Expiration](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/PointsExpiration.htm): GET /v2/users/{user_id}/points_expiration - [Badges](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/Badges.html): GET /v2.1/badges - [Leaderboard](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/Leaderboard.html): GET /v2/leaderboard ## Rewards and redemption - [Rewards](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/Rewards21.html): GET /v2.1/rewards (paginated, max 25) - [User Rewards](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/UserRewards21.html): GET /v2.1/users/{user_id}/rewards (max 10) - [User Redemption](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/UserRedemption.html): POST /v2/users/{user_id}/redemption - [User Redemption History v2.2](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/UserRedemptionHistoryv2_2.htm): GET /v2.2/users/{user_id}/redemption_history - [Usable Coupons](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/UsableCoupons.html) / [Use Coupon](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/UseCoupon.html) ## Commerce (POS host) - [Purchase](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/Purchase.html): POST /purchase — `receipt_id` must be unique per request; duplicates are rejected - [Fulfillment](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/Fulfillment.html): POST /fulfillment - [Return](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/Return.html): POST /return ## Events (outbound Data Push) CrowdTwist POSTs events to a customer-provided HTTPS endpoint. Payloads are NOT signed; the customer supplies Basic credentials or an `x-api-key` for CrowdTwist to present. Failed deliveries retry five times an hour for eight hours, then land in a support-exportable error log. - [Data Push Overview](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/DataPush.html) - [Live Push User Profile](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/PushUserProfile-withTiersv2.html) - [Live Push User Activity](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/LivePushUserActivity.html) - [Live Push User Redemption](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/LivePushUserRedemption.html) - [Live Push Points Expiration](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/LivePushPointsExpiration.htm) - [Live Push User Segmentation](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/LivePushUserSegmentation.htm) - [Oracle Responsys Data Push](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/ResponsysDataPush.html) / [Salesforce Marketing Cloud Data Push](https://docs.oracle.com/en/cloud/saas/marketing/crowdtwist-develop/Developers/SFMCDataPush.html) ## Limits, errors and commercials - Rate limit: 10,000 API requests per minute per program instance — published in the [Service Descriptions PDF](https://www.oracle.com/contracts/docs/corporate_crowdtwist_cloud_service_descriptions_090320.pdf), not in the developer docs. No `RateLimit-*` headers, no documented 429. - Errors: two envelopes — `{error, message}` on the loyalty API and `{system, reason, description, message}` on commerce. No RFC 9457. - SLA: 99.8% target availability, RTO 72h, RPO 24h (production only). - Pricing: no public price. SKUs are metered per 1,000 Active Members, per 10,000 Receipt Scans, per additional Program Instance and per additional Test Environment. ## Optional - [Oracle customer loyalty product page](https://www.oracle.com/industries/customer-loyalty/) - [Oracle Cloud Compliance](https://www.oracle.com/corporate/cloud-compliance/) - [Oracle vulnerability reporting](https://www.oracle.com/corporate/security-practices/assurance/vulnerability/reporting/)