--- name: University of Newcastle Australia description: University of Newcastle Australia public developer/API footprint review for APIs.json cataloging. url: https://raw.githubusercontent.com/api-evangelist/uon/refs/heads/main/review.yml created: '2026-06-03' modified: '2026-08-30' reviews: - date: '2026-08-30' rating: 2 summary: >- Re-profiled under the university pipeline, which settles operator attribution before saving anything. The June 2026 review credited "the documented public Figshare REST API" as UON's programmatic footprint, and the repository held eleven Figshare OpenAPI documents under UON's slug. That is a vendor's contract on a generic vendor host (api.figshare.com/v2, claimed by sixteen other institutions in this catalog) and it has been removed along with everything derived from it. Two institution-operated surfaces were verified in its place: a live Shibboleth SAML 2.0 identity provider at idp.newcastle.edu.au, registered in the Australian Access Federation, and a self-hosted XNAT 1.9.1.1 imaging platform at xnat.newcastle.edu.au on UON's own AWS estate, whose REST API is live but almost entirely authentication-gated. Four tenant relationships are recorded as tenancies rather than as UON APIs: Figshare, CourseLoop, Instructure Canvas and Springshare. UON holds two DataCite repository clients in its own name. The rating does not move: the footprint is genuinely thin, but it is now thin for the right reasons and attributed to the right operators. endpoints: - url: https://idp.newcastle.edu.au/idp/shibboleth status: 200 note: INSTITUTION. SAML 2.0 IdP metadata, application/xml, entityID and scope newcastle.edu.au. - url: https://md.aaf.edu.au/aaf-metadata.xml status: 200 note: Two newcastle.edu.au entities in the AAF aggregate — the IdP and the XNAT service provider. - url: https://xnat.newcastle.edu.au/xapi/siteConfig/buildInfo status: 200 note: INSTITUTION. XNAT 1.9.1.1, unauthenticated; UON AWS prod-xnat-hmri-frontend ELB. - url: https://xnat.newcastle.edu.au/xapi/v2/api-docs status: 302 note: Swagger description redirects to login; no contract publicly readable. - url: https://api.datacite.org/clients/ardcx.uon status: 200 note: DataCite repository client ARDCX.UON, 65 DOIs. - url: https://api.datacite.org/clients/uonau.figshare status: 200 note: DataCite repository client UONAU.FIGSHARE, 29 DOIs. - url: https://openresearch.newcastle.edu.au/oai?verb=Identify status: 202 note: TENANT, unreadable. AWS WAF challenge on every User-Agent; Identify never seen. - url: https://handbook.newcastle.edu.au/sitemap.xml status: 200 note: TENANT (CourseLoop). Child sitemap lists 9,755 program/course URLs. - url: https://canvas.newcastle.edu.au/ status: 200 note: TENANT (Instructure). Canvas API /api/v1/accounts returns 401 JSON. - url: https://www.newcastle.edu.au/ status: 403 note: Live, Cloudflare bot challenge. A limitation on us, not a finding about the institution. - url: https://policies.newcastle.edu.au/ status: 200 note: INSTITUTION. UON Policy Library on the university's own IP, readable. - url: https://libguides.newcastle.edu.au/ status: 200 note: TENANT. Springshare LibGuides, CNAME region-au.libguides.com. - url: https://github.com/university-of-newcastle-research status: 200 note: INSTITUTION. 10 public research-code repositories; no API descriptions. - url: https://api.newcastle.edu.au/ status: 0 note: Negative probe. No API gateway; host does not resolve. - url: https://developer.newcastle.edu.au/ status: 0 note: Negative probe. No developer portal; host does not resolve. - url: https://data.newcastle.edu.au/ status: 0 note: Negative probe. No open-data portal; host does not resolve. - url: https://nova.newcastle.edu.au/ status: 0 note: Negative probe. Former VITAL repository; dangling CNAME to a deleted AWS load balancer. - url: https://idp.newcastle.edu.au/.well-known/openid-configuration status: 404 note: Negative probe. SAML only; no OIDC discovery document. - date: '2026-06-03' rating: 2 summary: >- The University of Newcastle (UON) has no dedicated public API developer portal and no openly documented student/SIS/timetable/library APIs; enterprise and student systems (myUni, online tools, ServiceNow) sit behind institutional SSO and returned 403/login responses to automated probes. The verifiable programmatic footprint is research-oriented: Open Research Newcastle, the institutional repository, runs on the Figshare platform and is therefore reachable via the documented public Figshare REST API (api.figshare.com/v2 returned HTTP 200) plus an OAI-PMH endpoint at openresearch.newcastle.edu.au/oai (returned HTTP 202, a Figshare/CDN bot-mitigation challenge to non-browser clients). A research GitHub organization exists and resolves. No endpoints were fabricated; gated and challenged URLs are recorded honestly below. endpoints: - url: https://www.newcastle.edu.au/ status: 403 note: Official site; blocks automated clients but live in browser. - url: https://openresearch.newcastle.edu.au/ status: 202 note: Open Research Newcastle repository (Figshare); CDN challenge to bots. - url: https://openresearch.newcastle.edu.au/oai status: 202 note: OAI-PMH endpoint; Figshare platform bot challenge to non-browser clients. - url: https://api.figshare.com/v2/articles?page_size=1 status: 200 note: Public Figshare REST API serving Open Research Newcastle records. - url: https://docs.figshare.com/ status: 200 note: Public Figshare API documentation (platform docs). - url: https://github.com/university-of-newcastle-research status: 200 note: University of Newcastle Research GitHub organization; research code repos. - url: https://myuni.newcastle.edu.au/ status: 200 note: myUni student portal; SSO-gated, no public API documented. - url: https://uonline.newcastle.edu.au/ status: 403 note: Online learning/SSO entry point; gated, not a public API. - url: https://status.newcastle.edu.au/ status: 0 note: No public status page found at this host (did not resolve).