openapi: 3.2.0
info:
title: Beyond ACE Property Data Images API
version: 3.0.0
servers:
- url: https://api-test.freddiemac.com/single-family/loan-advisor-suite/las-beyondace-api/v2
security:
- bearerAuth: []
tags:
- name: Property Data Images
paths:
/image/{imageId}:
get:
tags:
- Property Data Images
summary: Retrieve image
description: Endpoint to retrieve Image.
operationId: getPropertyImage
parameters:
- name: imageId
in: path
description: image meta Id
required: true
style: simple
explode: false
schema:
type: string
- name: X-Lender-Id
in: header
description: Unique identifier assigned to the lender whose data is being submitted to the API. This lender must have a relationship established within Freddie Mac’s registration system with the AMC or Valuation Technology Provider submitting their data, if the lender is not submitting their own data directly. Sellers will generally have a 6-digit number and Third-Party Originators (TPOs) a 7-digit number (e.g. 000000).
required: true
style: simple
explode: false
schema:
type: string
- name: X-Amc-Id
in: header
description: Unique identifier for the submitting Appraisal Management Company (AMC) or Valuation Technology Provider submitting data to the API on behalf of a lender (e.g. AMC0000).
required: true
style: simple
explode: false
schema:
type: string
- name: X-LenderLoan-Id
in: header
description: Identifier for the lender’s loan number (e.g. 0501555332).
required: true
style: simple
explode: false
schema:
type: string
responses:
'200':
description: actual Image
'401':
description: "
Unauthorized
\n Error codes & details
\n - 401.001: Invalid Access Token.
- 401.002: Access Token Expired.
- 401.003: API Product mismatch for token.
- 401.004: Invalid API Key.
- 401.005: Invalid API Key for given resource.
- 401.006: Insufficient scope for Application.
- 401.007: Invalid Username/Password combination.
- 401.008: Invalid Refresh Token.
- 401.009: Invalid Client Secret.
- 401.010: Refresh Token expired.
- 401: Unable to authorize the request.
"
content:
application/json:
schema:
$ref: '#/components/schemas/ErrorResponse'
examples:
BACEAPIUnauthorizedResponse:
$ref: '#/components/examples/BACEAPIUnauthorizedResponse'
'404':
description: Image not found
content:
application/json:
schema:
$ref: '#/components/schemas/ErrorResponse'
examples:
GETResourceNotFound:
$ref: '#/components/examples/BACEAPINotFoundResponse'
ImageNotFoundResponse:
$ref: '#/components/examples/ImageNotFoundResponse'
'429':
description: "Too many Requests
\n Error codes & details
\n - 429.001: Rate limit exceeded, decrease the number of requests per second been sent
- 429.002: Quota limit exceeded, decrease the number of requests per minute been sent.
"
content:
application/json:
schema:
$ref: '#/components/schemas/ErrorResponse'
examples:
BACEAPILimitExceededResponse:
$ref: '#/components/examples/BACEAPILimitExceededResponse'
'500':
description: "Internal Server Error
\n Error codes & details
- 0005: API is unable to assess the submitted data at this time. Please resubmit or contact Customer Support at (800-FREDDIE) for assistance.
"
content:
application/json:
schema:
$ref: '#/components/schemas/ErrorResponse'
examples:
BACEAPIInternalErrorResponse:
$ref: '#/components/examples/BACEAPIInternalErrorResponse'
security:
- bearerAuth: []
put:
tags:
- Property Data Images
summary: Endpoint to upload and replace existing image
description: End point to update image. Image size must be within 1 MB to 50 MB.Image must be submitted in a valid format of JPG/PNG/JPEG.
operationId: updatePropertyImage
parameters:
- name: imageId
in: path
description: image Id to update
required: true
style: simple
explode: false
schema:
type: string
- name: X-Lender-Id
in: header
description: Unique identifier assigned to the lender whose data is being submitted to the API. This lender must have a relationship established within Freddie Mac’s registration system with the AMC or Valuation Technology Provider submitting their data, if the lender is not submitting their own data directly. Sellers will generally have a 6-digit number and Third-Party Originators (TPOs) a 7-digit number (e.g. 000000).
required: true
style: simple
explode: false
schema:
type: string
- name: X-Amc-Id
in: header
description: Unique identifier for the submitting Appraisal Management Company (AMC) or Valuation Technology Provider submitting data to the API on behalf of a lender (e.g. AMC0000).
required: true
style: simple
explode: false
schema:
type: string
- name: X-LenderLoan-Id
in: header
description: Identifier for the lender’s loan number (e.g. 0501555332).
required: true
style: simple
explode: false
schema:
type: string
requestBody:
$ref: '#/components/requestBodies/insertDaImage'
responses:
'200':
description: Updated Image successfully
'401':
description: "Unauthorized
\n Error codes & details
\n - 401.001: Invalid Access Token.
- 401.002: Access Token Expired.
- 401.003: API Product mismatch for token.
- 401.004: Invalid API Key.
- 401.005: Invalid API Key for given resource.
- 401.006: Insufficient scope for Application.
- 401.007: Invalid Username/Password combination.
- 401.008: Invalid Refresh Token.
- 401.009: Invalid Client Secret.
- 401.010: Refresh Token expired.
- 401: Unable to authorize the request.
"
content:
application/json:
schema:
$ref: '#/components/schemas/ErrorResponse'
examples:
BACEAPIUnauthorizedResponse:
$ref: '#/components/examples/BACEAPIUnauthorizedResponse'
'404':
description: Image not found
content:
application/json:
schema:
$ref: '#/components/schemas/ErrorResponse'
examples:
BACEAPINotFoundResponse:
$ref: '#/components/examples/BACEAPINotFoundResponse'
ImageNotFoundResponse:
$ref: '#/components/examples/ImageNotFoundResponse'
'429':
description: "Too many Requests
\n Error codes & details
\n - 429.001: Rate limit exceeded, decrease the number of requests per second been sent
- 429.002: Quota limit exceeded, decrease the number of requests per minute been sent.
"
content:
application/json:
schema:
$ref: '#/components/schemas/ErrorResponse'
examples:
BACEAPILimitExceededResponse:
$ref: '#/components/examples/BACEAPILimitExceededResponse'
'500':
description: "Internal Server Error
\n Error codes & details
- 0005: API is unable to assess the submitted data at this time. Please resubmit or contact Customer Support at (800-FREDDIE) for assistance.
"
content:
application/json:
schema:
$ref: '#/components/schemas/ErrorResponse'
examples:
BACEAPIInternalErrorResponse:
$ref: '#/components/examples/BACEAPIInternalErrorResponse'
security:
- bearerAuth: []
post:
tags:
- Property Data Images
summary: Endpoint to upload image
description: Endpoint to upload custom image for user entered comparable.Image size must be within 1 MB to 50 MB.Image must be submitted in a valid format of JPG/PNG/JPEG.
operationId: insertDaImage
parameters:
- name: imageId
in: path
description: image meta Id
required: true
style: simple
explode: false
schema:
type: string
- name: X-Lender-Id
in: header
description: Unique identifier assigned to the lender whose data is being submitted to the API. This lender must have a relationship established within Freddie Mac’s registration system with the AMC or Valuation Technology Provider submitting their data, if the lender is not submitting their own data directly. Sellers will generally have a 6-digit number and Third-Party Originators (TPOs) a 7-digit number (e.g. 000000).
required: true
style: simple
explode: false
schema:
type: string
- name: X-Amc-Id
in: header
description: Unique identifier for the submitting Appraisal Management Company (AMC) or Valuation Technology Provider submitting data to the API on behalf of a lender (e.g. AMC0000).
required: true
style: simple
explode: false
schema:
type: string
- name: X-LenderLoan-Id
in: header
description: Identifier for the lender’s loan number (e.g. 0501555332).
required: true
style: simple
explode: false
schema:
type: string
requestBody:
$ref: '#/components/requestBodies/insertDaImage'
responses:
'201':
description: Image stored
'401':
description: "Unauthorized
\n Error codes & details
\n - 401.001: Invalid Access Token.
- 401.002: Access Token Expired.
- 401.003: API Product mismatch for token.
- 401.004: Invalid API Key.
- 401.005: Invalid API Key for given resource.
- 401.006: Insufficient scope for Application.
- 401.007: Invalid Username/Password combination.
- 401.008: Invalid Refresh Token.
- 401.009: Invalid Client Secret.
- 401.010: Refresh Token expired.
- 401: Unable to authorize the request.
"
content:
application/json:
schema:
$ref: '#/components/schemas/ErrorResponse'
examples:
BACEAPIUnauthorizedResponse:
$ref: '#/components/examples/BACEAPIUnauthorizedResponse'
'404':
description: Image Meta not found
content:
application/json:
schema:
$ref: '#/components/schemas/ErrorResponse'
examples:
BACEAPINotFoundResponse:
$ref: '#/components/examples/BACEAPINotFoundResponse'
ImageNotFoundResponse:
$ref: '#/components/examples/ImageNotFoundResponse'
'429':
description: "Too many Requests
\n Error codes & details
\n - 429.001: Rate limit exceeded, decrease the number of requests per second been sent
- 429.002: Quota limit exceeded, decrease the number of requests per minute been sent.
"
content:
application/json:
schema:
$ref: '#/components/schemas/ErrorResponse'
examples:
BACEAPILimitExceededResponse:
$ref: '#/components/examples/BACEAPILimitExceededResponse'
'500':
description: "Internal Server Error
\n Error codes & details
- 0005: API is unable to assess the submitted data at this time. Please resubmit or contact Customer Support at (800-FREDDIE) for assistance.
"
content:
application/json:
schema:
$ref: '#/components/schemas/ErrorResponse'
examples:
BACEAPIInternalErrorResponse:
$ref: '#/components/examples/BACEAPIInternalErrorResponse'
security:
- bearerAuth: []
components:
schemas:
Error:
required:
- error
type: object
properties:
error:
type: string
description: Information about the error.
Message:
required:
- messageCode
- messageDescription
type: object
properties:
messageCode:
type: string
messageDescription:
type: string
ErrorResponse:
required:
- code
- details
- message
- proxyCorrelationId
type: object
properties:
proxyCorrelationId:
type: string
description: PDR API assigned control number for the request.
code:
type: string
description: Error Code
message:
type: string
description: Error Description
details:
type: array
description: A collection of error details. Details container will contain error format.
items:
anyOf:
- $ref: '#/components/schemas/Error'
- $ref: '#/components/schemas/Message'
description: Information about the errors.
requestBodies:
insertDaImage:
content:
multipart/form-data:
schema:
type: object
properties:
file:
type: string
format: binary
description: Image size must be within 1 MB to 50 MB.Image must be submitted in a valid format of JPG/PNG/JPEG.
examples:
BACEAPILimitExceededResponse:
summary: Quota or Resource Limit Exceeded
description: The number of requests made exceed the threshold. Reduce the number of requests.
value:
proxyCorrelationId: '12345678'
code: 429.002
message: Quota limit exceeded
details:
- error: Quota limit exceeded, decrease the number of requests per minute been sent.
BACEAPINotFoundResponse:
summary: Resource not found
description: This typically can happen if the resource URL is not correct.
value:
proxyCorrelationId: '12345678'
code: 404.001
message: No resource for GET/POST
details:
- error: No resource for GET/POST
ImageNotFoundResponse:
summary: Image not found response
description: This typically can happen when the image is not submitted.
value:
proxyCorrelationId: '12345678'
code: 404.001
message: No resource for GET/POST
details:
- error: imageId {imageId} provided not found.
BACEAPIUnauthorizedResponse:
summary: Unauthorized Response
description: The user is not authorized to access the application.
value:
proxyCorrelationId: '12345678'
code: 401
message: Unable to authorize the request.
details:
- error: The user profile is not authorized to access the system.
BACEAPIInternalErrorResponse:
summary: Internal Server error
description: An 0005 error that indicates that the request could not be processed. Please reach out to Customer Support.
value:
proxyCorrelationId: '12345678'
code: 500
message: Internal Server Error
details:
- MessageCode: '0005'
MessageDescription: API is unable to assess the submitted data at this time. Please resubmit or contact Customer Support at (800-FREDDIE) for assistance.
securitySchemes:
bearerAuth:
type: http
scheme: bearer
bearerFormat: Token acquired from OAuth API for the user credentials