# Flockjay > Sales enablement platform combining a learning management system, a sales content > management system and AI coaching. Flockjay operates a REST API and a hosted, > OAuth-protected Model Context Protocol (MCP) server, but publishes no developer > portal, no API documentation and no machine-readable specification for either. Generated by API Evangelist on 2026-08-14 from live probes of flockjay.com and api.flockjay.com. Flockjay does not serve its own /llms.txt (https://flockjay.com/llms.txt returns HTTP 404). This is a third-party profile. Nothing here is published by Flockjay unless the link points at a flockjay.com URL. ## Agent surfaces - [MCP server](https://api.flockjay.com/mcp): Hosted remote MCP endpoint. JSON-RPC 2.0 over HTTP POST. Every method requires an OAuth 2.1 bearer token with scope `read`; anonymous `tools/list` returns HTTP 401. Tool names and input schemas are NOT public. - [MCP announcement](https://flockjay.com/resources/blog/ai-enablement-mcp-server): The provider's own launch post. Describes intended capabilities — rep readiness checks, coaching scorecard insights, shared-content performance, call/deal-review briefs, on-demand enablement reporting — as prose, not as a tool reference. - No A2A agent card is published (404 on api.flockjay.com; SPA soft-404 on flockjay.com). - No llms.txt, no /.well-known/ai-plugin.json, no /.well-known/api-catalog. ## Authorization - [Authorization server metadata](https://api.flockjay.com/.well-known/oauth-authorization-server): RFC 8414. Issuer https://api.flockjay.com. - [Protected resource metadata](https://api.flockjay.com/.well-known/oauth-protected-resource): RFC 9728. Names https://api.flockjay.com/mcp as the protected resource. - [JWKS](https://api.flockjay.com/oauth/.well-known/jwks.json): one RS256 signing key. - Flow: authorization code + PKCE (S256 required). Public clients only (`token_endpoint_auth_methods_supported: ["none"]`). Dynamic client registration (RFC 7591) is available at https://api.flockjay.com/oauth/register/. - Scopes: `read`, `offline_access`. Read-only — there is no write scope. - Authorize at https://flockjay.com/oauth/authorize, token at https://api.flockjay.com/oauth/token/, revoke at https://api.flockjay.com/oauth/revoke/. ## REST API - [API root](https://api.flockjay.com/api/): HTTP 200 anonymously. Returns a JSON map of all 20 collections to absolute URLs. This is the only self-describing artifact Flockjay publishes about the REST API. - Auth: DRF token — `Authorization: Token `. Not self-service; no public signup. - v1 collections (`/api/`): events, questions, course, module, submodule, assignment_submissions, assignments, live_sessions, groups, rubrics, users. - v2 collections (`/api/v2/`): user, learning-content, progress, sharedcontent, event, task, user_certificate, assignment-submission, search. - Pagination: DRF page-number — `{"count", "next", "previous", "results"}`, params `page` and `page_size`. - Errors: `{"detail": "..."}`. Not RFC 9457. No error codes. Unrouted paths return an HTML 404 body on an otherwise-JSON host. - No OpenAPI, no GraphQL, no AsyncAPI, no Postman collection is published anywhere. - No idempotency keys, no rate-limit headers, no request-id header, no Sunset or Deprecation headers. ## Company and policy - [Website](https://flockjay.com) - [Product: Flockjay AI](https://flockjay.com/product/flockjay-ai) - [Integrations](https://flockjay.com/product/integrations): Gong, Chorus, Clari Copilot, Slack, Microsoft Teams, Zoom, Salesforce, Okta SSO, Google Drive, Microsoft Office, and a Chrome extension. - [Trust Center](https://flockjay.com/product/trust-center) - [Security](https://flockjay.com/product/security) — security contact security@flockjay.com. No security.txt is served. - [Support SLA](https://flockjay.com/resources/support) — 24-hour response on email, Slack and Teams; 24/7 phone for critical outages. - [Blog](https://flockjay.com/resources/blog) - [Privacy Policy](https://flockjay.com/legal/privacy-policy) - [Terms and Conditions](https://flockjay.com/legal/terms-and-conditions) - [GitHub](https://github.com/Flockjay) — forks and take-home exercises only; no first-party client library. ## Not available - No pricing page. Sales-led only; the single conversion path is https://flockjay.com/request-demo. - No status page, no changelog, no deprecation policy, no public help center. - No SDK on npm, PyPI, RubyGems, crates.io or Packagist. - Careful: flockjay.com answers HTTP 200 with an identical 2,197-byte React shell for every unrouted path, including /pricing, /developers, /api, /docs and every /.well-known/* path. Treat a 200 from that host as evidence of nothing unless the body is a real document.