--- name: Universität Hamburg description: Universität Hamburg public developer/API footprint review for APIs.json cataloging. url: https://raw.githubusercontent.com/api-evangelist/universitat-hamburg/refs/heads/main/review.yml created: '2026-06-03' modified: '2026-09-01' reviews: - date: '2026-09-01' rating: 3 summary: >- Re-profiled under the API Evangelist university pipeline, operator axis first. The June 2026 profile held two surfaces and no artifacts; it was not wrong, it was incomplete. Universität Hamburg does operate real institution-engineered machine-readable infrastructure, all of it on its own hosts: an unauthenticated JSON research-data API at www.fdr.uni-hamburg.de (CORS open, X-RateLimit-Limit 5000, RFC 8288 Link pagination, 401 on deposit, 404 with a JSON error body), FIVE live OAI-PMH 2.0 repositories, and its own Shibboleth SAML 2.0 Identity Provider whose metadata it publishes at login.uni-hamburg.de and which is registered in DFN-AAI and thereby eduGAIN. Registry memberships evidenced: DataCite (prefix 10.25592, client tib.fdmuh; library client zbw.subhh), Crossref (member 25426, prefix 10.15460, 3,954 DOIs), ROR (00g30e956). No vendor contract was found in the repo and none was added; the institution publishes no OpenAPI, so the single spec in this repo was derived by API Evangelist from live probes and is marked as such. Genuinely absent: developer portal, /llms.txt, /.well-known/security.txt, OAuth, course/registrar API, open-data portal. Two candidate surfaces were probed and rejected as soft-200 shells rather than counted, and one (api.hamburg.de OGC API - Features) was rejected as the CITY of Hamburg's, not the university's. endpoints: - url: https://www.fdr.uni-hamburg.de/api/records/?size=1&sort=mostrecent status: 200 note: >- ZFDM Repository REST API, unauthenticated JSON. Headers X-RateLimit-Limit 5000, Access-Control-Allow-Origin *, RFC 8288 Link rel=self/next. - url: https://www.fdr.uni-hamburg.de/api/records/19607 status: 200 note: Single record, DOI 10.25592/uhhfdm.19607, creators carry ORCID iDs. - url: https://www.fdr.uni-hamburg.de/api/records/999999999 status: 404 note: '{"status": 404, "message": "PID does not exist."} — structured JSON errors.' - url: https://www.fdr.uni-hamburg.de/api/deposit/depositions status: 401 note: Write paths credentialed; no self-service registration found. - url: https://www.fdr.uni-hamburg.de/api/communities/uhh status: 200 note: Community "UHH" with a stated curation policy. - url: https://www.fdr.uni-hamburg.de/oai2d?verb=Identify status: 200 note: ZFDM Repository OAI-PMH 2.0; datacite/oai_datacite metadata prefixes. - url: https://ediss.sub.uni-hamburg.de/oai/request?verb=ListMetadataFormats status: 200 note: Nine prefixes incl. oai_datacite, xMetaDissPlus, epicur, marc, ore. - url: https://hup.sub.uni-hamburg.de/index.php/index/oai?verb=Identify status: 200 note: Hamburg University Press (OJS), 15 sets. - url: https://journals.sub.uni-hamburg.de/index.php/index/oai?verb=Identify status: 200 note: HUP journal server, 100+ sets, earliest datestamp 2014-02-10. - url: https://digitalisate.sub.uni-hamburg.de/oai?verb=Identify status: 200 note: >- Kitodo.Presentation, serving real PPN identifiers; Identify block still carries the software default adminEmail unknown@example.org. - url: https://login.uni-hamburg.de/idp/shibboleth status: 200 note: >- Institution's own SAML 2.0 IdP metadata, 13,574 bytes, DisplayName "Universität Hamburg (UHH)", 3 SSO endpoints. - url: https://mdq.aai.dfn.de/entities/https%3A%2F%2Flogin.uni-hamburg.de%2Fidp%2Fshibboleth status: 200 note: >- DFN-AAI MDQ entry; registrationAuthority https://www.aai.dfn.de; REFEDS R&S + GEANT CoCo v1 entity categories. - url: https://api.datacite.org/prefixes/10.25592 status: 200 note: Prefix maps to client tib.fdmuh, "Universität Hamburg", since 2017. - url: https://api.crossref.org/members/25426 status: 200 note: SUB Hamburg, prefix 10.15460, 3,954 DOIs. - url: https://ror.org/00g30e956 status: 200 note: ROR record for Universität Hamburg. - url: https://github.com/subhh status: 200 note: >- University library's open-source org, 38 public repos — VuFind modules, OAI-PMH transformation pipelines, a DAIA specification, a IIIF Presentation API implementation. Real engineering, none of it a published API product. - url: https://katalogplus.sub.uni-hamburg.de/vufind/api/v1/search?lookfor=hamburg&limit=1 status: 200 note: >- REJECTED — soft-200. Identical 1,989-byte "SUBHHCore Authorization" page on every path. Gated, not an API. - url: https://kataloge.uni-hamburg.de/api/v1/search?lookfor=test&limit=1 status: 200 note: REJECTED — soft-200 cookie-consent HTML shell on every path. - url: https://www.uni-hamburg.de/llms.txt status: 404 - url: https://www.uni-hamburg.de/.well-known/security.txt status: 404 - url: https://ediss.sub.uni-hamburg.de/server/api status: 404 note: No DSpace 7 REST API; /rest also 404. OAI-PMH only. - date: '2026-06-03' rating: 2 summary: >- Universität Hamburg has no single branded developer portal or public REST API catalog. The verified machine-readable footprint is library/open-access infrastructure: a live DSpace OAI-PMH endpoint for the institutional dissertation repository (ediss.sub.hamburg) and the Open-Access-Portal. An official Universität Hamburg GitHub organization exists (3 public repos) and an RRZ-hosted GitLab is available. Campus systems (STiNE) and Shibboleth/SAML SSO are gated and not documented as public APIs. No endpoints or properties were fabricated; only URLs probed live or confirmed via authoritative sources are listed below. endpoints: - url: https://ediss.sub.uni-hamburg.de/oai/request?verb=Identify status: 200 note: Live OAI-PMH 2.0 Identify response (DSpace XOAI); repositoryName ediss.sub.hamburg. - url: https://ediss.sub.uni-hamburg.de/ status: 200 note: DSpace institutional repository front end for e-dissertations. - url: https://www.openaccess.uni-hamburg.de/en.html status: 200 note: Open Access Portal; discovery hub, no documented public REST API. - url: https://www.uni-hamburg.de/en.html status: 200 note: Official university website. - url: https://github.com/Uni-Hamburg status: 200 note: Official Universität Hamburg GitHub org, 3 public repositories. - url: https://www.stine.uni-hamburg.de/ status: 200 note: STiNE campus-management system (CampusNet); gated, no public API. - url: https://gitlab.rrz.uni-hamburg.de/ status: 200 note: RRZ-hosted GitLab instance for research/teaching; access gated. - url: https://www.linkedin.com/school/universitaet-hamburg/ status: 999 note: LinkedIn school page; 999 is LinkedIn anti-bot, URL valid in browser.