openapi: 3.0.3 info: title: ParkWhiz / Arrive API v4 Accounts & Vehicles OAuth API description: 'The ParkWhiz v4 REST API powers parking discovery, reservation, and payment for the ParkWhiz and BestParking consumer products and for approved integration partners. It exposes bookable parking availability and pricing (quotes), parking locations, bookings and parking passes, venues and events, monthly parking, accounts, vehicles, payment methods, and tickets. Access is partner-gated: the API is publicly documented at developer.parkwhiz.com (mirrored at developer.arrive.com), but OAuth client credentials (client_id, client_secret, redirect_uri) are issued to approved partners on request via dev@parkwhiz.com, not through self-serve signup. Scopes are assigned per partner - public (default), partner, mobile, internal, and data. A sandbox environment is available for development. This OpenAPI document was authored by API Evangelist from the public v4 developer documentation. Paths and methods reflect the documented API; the schema shapes are representative models, not a byte-for-byte copy of the provider spec.' version: '4.0' contact: name: ParkWhiz Developer Support url: https://developer.parkwhiz.com/ email: dev@parkwhiz.com x-logo: url: https://kinlane-images.s3.amazonaws.com/shared/apis-json/apis-json-logo.jpg servers: - url: https://api.parkwhiz.com/v4 description: Production - url: https://api-sandbox.parkwhiz.com/v4 description: Sandbox - url: https://api.arrive.com/v4 description: Production (Arrive-branded host) security: - oauth2: [] tags: - name: OAuth description: Token issuance for partner and user authorization. paths: /oauth/token: post: operationId: createToken tags: - OAuth summary: Generate an OAuth access token description: Exchange partner credentials or user credentials for an access token. Supported grant types include client_credentials, password, authorization_code, refresh_token, and public token for mobile apps. security: [] requestBody: required: true content: application/x-www-form-urlencoded: schema: type: object properties: grant_type: type: string enum: - client_credentials - password - authorization_code - refresh_token client_id: type: string client_secret: type: string scope: type: string example: public partner required: - grant_type - client_id responses: '200': description: An access token. content: application/json: schema: type: object properties: access_token: type: string token_type: type: string example: bearer expires_in: type: integer example: 3600 scope: type: string example: public partner '401': $ref: '#/components/responses/Unauthorized' components: responses: Unauthorized: description: Missing or invalid OAuth token. content: application/json: schema: $ref: '#/components/schemas/Error' schemas: Error: type: object properties: message: type: string code: type: string securitySchemes: oauth2: type: oauth2 description: 'OAuth 2.0. Partner credentials (client_id, client_secret, redirect_uri) are issued by ParkWhiz to approved partners. Scopes: public (default), partner, mobile, internal, data.' flows: clientCredentials: tokenUrl: https://api.parkwhiz.com/v4/oauth/token scopes: public: Default read access to public resources. partner: Partner-level access to bookable inventory and bookings. data: Access to resources restricted by data licensing. authorizationCode: authorizationUrl: https://api.parkwhiz.com/v4/oauth/authorize tokenUrl: https://api.parkwhiz.com/v4/oauth/token scopes: public: Default read access to public resources. mobile: Mobile app user access.