# viagogo > viagogo is a global online ticket marketplace for live events — concerts, sport and theatre — operating in more than 90 countries and, since the 2020 acquisition of StubHub, part of StubHub Holdings. viagogo publishes a public developer program covering five OAuth2-secured HTTP APIs served from api.viagogo.net over `application/hal+json`, with a matching sandbox environment, official GogoKit client libraries, and machine-readable OpenAPI 3.0 definitions served from the API host and mirrored nightly into a public docs repository. Generated by API Evangelist on 2026-08-05. method: generated. viagogo publishes no `/llms.txt` of its own (probed https://developer.viagogo.net/llms.txt → 404 and https://www.viagogo.com/llms.txt → 404), so this file is assembled from the provider's own published surface. Nothing here is invented. Base URLs: production `https://api.viagogo.net` (Catalog) and `https://api.viagogo.net/v2` (Account, Inventory, Sales, Webhooks). Sandbox `https://sandbox.api.viagogo.net`. Authentication: OAuth2 only. Token endpoint `https://account.viagogo.com/oauth2/token` (sandbox `https://sandbox.account.viagogo.com/oauth2/token`). Send `Authorization: Bearer `. Unauthenticated requests return `401`. ## APIs - [viagogo Catalog API](https://developer.viagogo.net/api-reference/catalog): Events, venues, categories, venue seat-map configurations, external-id event mapping, and instant-liquidity listing offers. 20 operations. - [viagogo Account API](https://developer.viagogo.net/api-reference/account): The authenticated user, addresses, and payment methods for a listing. 8 operations. - [viagogo Inventory API](https://developer.viagogo.net/api-reference/inventory): Seller listings and previews, listing constraints, seller/requested events, e-ticket upload and mark-back, and shipping labels. 33 operations. - [viagogo Sales API](https://developer.viagogo.net/api-reference/sales): Sales and recent updates, sale confirmation/update/rejection, ticket holders, e-tickets and transfer proof, shipments, and seller payments. 23 operations. - [viagogo Webhooks API](https://developer.viagogo.net/api-reference/webhooks): Webhook subscription CRUD plus a ping trigger, across seven topic payload types. 6 operations. ## Specs - [Catalog OpenAPI 3.0](https://api.viagogo.net/catalog/openapi/openapi.json): version 1.0.0.49 - [Account OpenAPI 3.0](https://api.viagogo.net/v2/openapi/account.json): version 2.249.0.0 - [Inventory OpenAPI 3.0](https://api.viagogo.net/v2/openapi/inventory.json): version 2.249.0.0 - [Sales OpenAPI 3.0](https://api.viagogo.net/v2/openapi/sales.json): version 2.249.0.0 - [Webhooks OpenAPI 3.0](https://api.viagogo.net/v2/openapi/webhooks.json): version 2.249.0.0 - [Docs-repo spec mirror](https://github.com/viagogo/viagogo-api-docs/tree/main/static/openapi): re-synced from the API host nightly by a scheduled GitHub Action; can lag the API host by up to a day - [OpenID Connect discovery](https://account.viagogo.com/.well-known/openid-configuration): authorization server metadata (RFC 8414 / OIDC), also served at `/.well-known/oauth-authorization-server` ## Docs - [Developer portal](https://developer.viagogo.net/): the whole developer surface - [Introduction](https://developer.viagogo.net/docs/overview/introduction): how to use the docs, in order - [Authentication](https://developer.viagogo.net/docs/authentication/): OAuth2 across all APIs - [Basic steps](https://developer.viagogo.net/docs/authentication/basic-steps): obtain a token, use it, refresh it - [Application-only flow](https://developer.viagogo.net/docs/authentication/application-only-authentication-flow): client_credentials, for public non-user data - [User-login flow](https://developer.viagogo.net/docs/authentication/user-login-authentication-flow): authorization_code, for user-specific data - [Token expiration](https://developer.viagogo.net/docs/authentication/token-expiration): refresh_token grant; refresh tokens are single-use and not issued by the application-only flow - [Scopes](https://developer.viagogo.net/docs/authentication/scopes): nine documented scopes - [Media type](https://developer.viagogo.net/docs/overview/media-type): HAL — `_links`, `_embedded`, `application/hal+json` - [Pagination](https://developer.viagogo.net/docs/overview/pagination): `page`/`page_size`, 1-based, default 100, follow first/prev/next/last rels - [Sorting](https://developer.viagogo.net/docs/overview/sorting): `sort=field,-field` - [Sparse fieldsets](https://developer.viagogo.net/docs/overview/sparse-fieldsets): `fields=` and `fields[TYPE]=` - [Error responses](https://developer.viagogo.net/docs/overview/error-responses): the `{code, message, errors}` envelope and nine error codes - [Sale states](https://developer.viagogo.net/docs/overview/transaction-states): the sale state machine and the seller action each state requires - [Sandbox environment](https://developer.viagogo.net/docs/overview/sandbox-environment): separate host, separate authorization server, separate credentials - [Localization](https://developer.viagogo.net/docs/overview/localization) - [Basic types](https://developer.viagogo.net/docs/overview/basic-types): `Money` and friends - [Guides](https://developer.viagogo.net/docs/guides/): end-to-end integration guides - [Creating a listing](https://developer.viagogo.net/docs/guides/creating-a-listing): the recommended requested-event path and `external_id` - [Barcodes and allocation](https://developer.viagogo.net/docs/guides/barcodes-and-allocation): seat_ordinal allocation, and why you must never predict it - [Announcements](https://developer.viagogo.net/blog): the change/deprecation channel ([RSS](https://developer.viagogo.net/blog/rss.xml)) ## SDKs - [GogoKit for .NET](https://www.nuget.org/packages/GogoKit) — [source](https://github.com/viagogo/gogokit.net) - [gogokit for Python](https://pypi.org/project/gogokit/) — [source](https://github.com/viagogo/gogokit.py) - [gogokit for Ruby](https://rubygems.org/gems/gogokit) — [source](https://github.com/viagogo/gogokit.rb) - [viagogo/gogokit for PHP](https://packagist.org/packages/viagogo/gogokit) — [source](https://github.com/viagogo/gogokit.php) - [HalKit](https://github.com/viagogo/HalKit): the .NET HAL hypermedia library GogoKit is built on - [Client libraries index](https://developer.viagogo.net/docs/overview/libraries) ## Company - [viagogo](https://www.viagogo.com/) - [Support / help centre](https://support.viagogo.com/) - [GitHub organization](https://github.com/viagogo) - [Docs repository](https://github.com/viagogo/viagogo-api-docs): open source; issues and doc PRs accepted - [Terms and conditions](https://www.viagogo.com/secure/help/termsandconditions) - [Privacy policy](https://www.viagogo.com/secure/help/privacy) - [Sign in](https://my.viagogo.com/secure/login) ## What viagogo does not publish Recorded so an agent does not go looking, and so the gaps are visible to the provider: - No `/llms.txt`, no `AGENTS.md`, no packaged agent skills. - No MCP server. A `tools/list` POST to mcp.viagogo.com, mcp.viagogo.net, api.viagogo.net/mcp and developer.viagogo.net/mcp found nothing. - No A2A agent card at `/.well-known/agent-card.json` or `/.well-known/agent.json` on any host. - No AsyncAPI document, although the webhook surface is real and fully documented. - No `/.well-known/security.txt` (RFC 9116), no `/.well-known/api-catalog` (RFC 9727). - No idempotency-key mechanism — retrying a POST is not safe. The `external_id` field on seller listings de-duplicates but is not idempotent: a replay deletes the previous listing and creates a new one. - No published rate-limit policy and no `X-RateLimit-*` or `Retry-After` headers observed. - No status page, no SLA, no deprecation policy, and no Sunset/Deprecation headers (RFC 8594). Deprecations are announced on the developer blog, whose last entry is from 2018. - No webhook payload signing — delivery authentication is a subscriber-supplied static `Authorization` header value. - No public self-service credential issuance; Client ID and Client Secret are issued by viagogo per application.