generated: '2026-09-05' method: searched source: https://login.dealogic.com/.well-known/openid-configuration (HTTP 200, fetched 2026-09-05) and the oauth2 securityScheme declared in all eight harvested OpenAPI documents docs: https://iongroup.com/analytics/data-portal/apis-data-feeds/ summary: types: - oauth2 - openIdConnect oauth2_flows: - implicit note: 'Every Dealogic HTTP API harvested declares exactly one securityScheme: OAuth 2.0 implicit against the shared Dealogic identity provider at login.dealogic.com. There is no API-key path. Unauthenticated calls return 401 with an empty body (probed 2026-09-05 against https://spac.analytics.dealogic.com/odata/SpacEntry).' identity_provider: issuer: https://login.dealogic.com product: PingFederate evidence: - https://login.dealogic.com/pf/JWKS returns the JWKS (HTTP 200) - userinfo_endpoint is https://login.dealogic.com/idp/userinfo.openid - grant_types_supported includes urn:pingidentity.com:oauth2:grant_type:validate_bearer discovery: - url: https://login.dealogic.com/.well-known/openid-configuration status: 200 file: well-known/dealogic-login-dealogic-com-openid-configuration.json - url: https://login.dealogic.com/.well-known/oauth-authorization-server status: 200 file: well-known/dealogic-login-dealogic-com-oauth-authorization-server.json schemes: - name: oauth2 type: oauth2 in: header header: Authorization prefix: Bearer flows: - flow: implicit authorizationUrl: https://login.dealogic.com/as/authorization.oauth2 tokenUrl: https://login.dealogic.com/as/token.oauth2 scopes_declared_in_spec: 0 note: The scopes map is EMPTY in every published spec. The scopes the authorization server actually advertises are in scopes/dealogic-scopes.yml, read from the OIDC discovery document. sources: - openapi/dealogic-analytics-spac-v2-openapi.json - openapi/dealogic-analytics-spac-v1-openapi.json - openapi/dealogic-analytics-bank-openapi.json - openapi/dealogic-analytics-company-openapi.json - openapi/dealogic-analytics-sponsor-openapi.json - openapi/dealogic-reporting-openapi.json - openapi/dealogic-cortex-reporting-openapi.json - openapi/dealogic-iona-profiles-openapi.json endpoints: authorization: https://login.dealogic.com/as/authorization.oauth2 token: https://login.dealogic.com/as/token.oauth2 userinfo: https://login.dealogic.com/idp/userinfo.openid jwks: https://login.dealogic.com/pf/JWKS introspection: https://login.dealogic.com/as/introspect.oauth2 revocation: https://login.dealogic.com/as/revoke_token.oauth2 end_session: https://login.dealogic.com/idp/init_logout.openid grant_types_supported: - implicit - authorization_code - refresh_token - password - client_credentials - urn:pingidentity.com:oauth2:grant_type:validate_bearer - urn:ietf:params:oauth:grant-type:jwt-bearer - urn:ietf:params:oauth:grant-type:saml2-bearer - urn:ietf:params:oauth:grant-type:device_code - urn:ietf:params:oauth:grant-type:token-exchange - urn:openid:params:grant-type:ciba token_endpoint_auth_methods_supported: - client_secret_basic - client_secret_post - client_secret_jwt - private_key_jwt - tls_client_auth - none pkce: supported: true code_challenge_methods: - plain - S256 client_ids_published_in_swagger_ui: - client_id: Dealogic.Analytics.Spac ui: https://spac.analytics.dealogic.com/index.html - client_id: Dealogic.Analytics ui: https://bank.analytics.dealogic.com/index.html - client_id: Reporting.API ui: https://api.reporting.dealogic.com/index.html onboarding: self_service: false note: No self-service signup or key issuance. OAuth clients are provisioned to licensed customers; access starts with the ION Analytics request-information form. url: https://iongroup.com/analytics/data-portal/request-info/ feed_authentication: api: Dealogic Primary Market Deals & Entities Feed type: username/password on the Dealogic secure FTP server source: https://iongroup.com/analytics/data-portal/apis-data-feeds/dealogic-origination-data-feed/authentication-and-authorization/