# Trend (Trend by soona) > Trend is a user-generated content (UGC) marketplace connecting brands with a network of vetted independent creators who produce custom photo and video content for TikTok, Instagram, Facebook, YouTube and Amazon. Brands buy prepaid creator credits, post a creative brief, hire creators, and receive full licensing and distribution rights to the delivered content. Trend was acquired by soona and is being folded in as "soona UGC". Generated by API Evangelist on 2026-08-13. Method: generated (Trend serves no llms.txt of its own — https://trend.io/llms.txt and https://api.trend.io/llms.txt both return 404). Everything below is grounded in the provider's own published OpenAPI at https://api.trend.io/docs-json. ## What an agent should know first - There is **no developer program**. No developer portal, no signup for API keys, no API reference prose, no SDKs, no CLI, no MCP server, no agent card, no webhooks, no sandbox, and no published rate limits. - There **is** a real, public, machine-readable contract: OpenAPI 3.0.0 at https://api.trend.io/docs-json (also /docs-yaml), 122 paths and 124 operations, served unauthenticated. The Swagger UI at /docs is password-protected; the specification behind it is not. - The API is the platform's own application backend (NestJS/Express behind Envoy), not a product sold to developers. Calling it requires a real Trend brand or creator account. - Version is a build number, 1.28.31, carried in `info.version` and echoed by the API root. Paths are unversioned — there is no `/v1` and nothing to pin to. ## API - [OpenAPI 3.0 specification](https://api.trend.io/docs-json): 124 operations, 64 schemas, served publicly and unauthenticated. - [Swagger UI](https://api.trend.io/docs): password-protected (HTTP 401). - Base URL: `https://api.trend.io` ## Authentication - `access-token` — HTTP bearer, JWT, issued by Firebase Authentication. Global default for every operation. Obtain via `POST /auth/login` (creator), `POST /auth/brand/login` (brand), or the Google SSO variants. - `admin-api-key` — apiKey in the `trend-api-key` header. Required by 39 administrative and system operations. - Enforcement is per-route and does not match the declared global security block: `GET /payment/stripe/packages` answers 200 anonymously. ## Operation groups - **Auth** — creator and brand signup/login, Google SSO, profile, password and email updates, account deletion, soona account linking. - **Brand** — brand profile updates, referrals, favorited creators, HubSpot identification, admin approve/reject/credit adjustments. - **Campaign** — draft, update, submit, list/unlist, relist, archive, reactivate, bump; invite creators; approve or remove partnerships; read submissions. - **Creator** — search the network with pagination, read and update creator records, portfolios, public profiles, demographics, levels and bonus tables, registration and approval. - **Partnership** — application submission, approval/rejection, due dates, rehire invite accept/decline (web and app variants). - **Content** — creator submission, brand approval, revision requests, system approval, view tracking, removal, pre-signed upload URLs. - **Message** — brand↔creator threads with send, read and unread-count routes. - **Shipment** — create and update product shipments to hired creators; inbound carrier event receiver. - **Payment** — Stripe credit-package listing, checkout session creation, session card lookup, payouts, inbound Stripe event receiver. - **AI** — product scene photo generation, image quality enhancement, super-resolution retrieval. - **Upload** — S3 pre-signed URLs for content and AI assets. - **Admin / System** — staff operations gated by `trend-api-key`. ## Conventions - Pagination: page-number. `page`, `perPage`, `sortBy`, `returnAll`, `paginationFlags`; response envelope `FindAllResponse` with `documents`, `total`, `totalPages`. - Errors: NestJS default `{"message","error","statusCode"}` in `application/json`. Not RFC 9457. `message` is a string, or an array of strings on validation failure — handle both. - **No idempotency.** No `Idempotency-Key` header exists on any operation, including Stripe checkout and credit grants. Do not blind-retry unsafe requests. - **No rate-limit headers.** No `X-RateLimit-*`, no `RateLimit-*`, no `Retry-After`, and no 429 declared. There is no runtime budget signal. - **No request id.** Nothing correlatable is echoed; only `x-envoy-upstream-service-time`. - Identifiers are MongoDB ObjectIds (`_id`), except users, keyed by Firebase uid. Ids are unprefixed and not self-describing. - CORS: `access-control-allow-origin: *`. ## Pricing Credits, not API plans. Four prepaid packages, machine-readable at `GET /payment/stripe/packages`: - Starter — $550, 60 credits, up to 6 videos or 15 photos - Essential — $1,045, 140 credits, up to 14 videos or 35 photos - Growth — $1,980, 280 credits, up to 28 videos or 70 photos (most popular) - Scale — $3,872, 560 credits, up to 56 videos or 140 photos Credits expire 12 months after purchase. Hiring a creator costs 20, 40 or 60 credits by creator level. No subscription or platform fees. No API pricing exists. ## Not available - No MCP server (`mcp.trend.io` does not resolve; `api.trend.io/mcp` → 404) - No A2A agent card (`/.well-known/agent-card.json` → 404 on trend.io, api.trend.io, soona.co) - No `/.well-known/` documents of any kind; no `security.txt` - No AsyncAPI and no outbound webhooks — the two `/events` routes are inbound receivers for Stripe and shipping carriers - No SDKs or client libraries in any registry; the Trend-io GitHub org holds only two hiring-exercise repos - No changelog, no status page, no SLA, no deprecation policy - Note: `trend.statuspage.io` is **Trend Micro's** status page, not this company's ## Links - Website: https://www.trend.io - Pricing: https://www.trend.io/pricing - Application: https://app.trend.io - Creators: https://creators.trend.io - Support: https://support.soona.co - Blog: https://www.trend.io/blog - GitHub: https://github.com/Trend-io - Parent: https://soona.co - Terms: https://soona.co/terms - Privacy: https://soona.co/privacy-policy