Identity
Resolve up to 100 handles to their companies in one call
/data-api/v2/identity/graph/bulk- Scope
- directory:read
- Freshness
- catalog read
- Group
- Identity
- Platforms
- any
What this endpoint answers
The batch form of the reverse lookup, for enriching a list rather than a record. Send platform and handle pairs, get the company behind each one with the same confidence rule the single lookup uses. Pairs that resolve to nothing come back with found false rather than being dropped, so a caller can reconcile the batch positionally.
This is a catalog read: it is served from the CRM Solid database in milliseconds, costs one budget unit, and reports how old the reading is in meta.cache_age_s. It needs the directory:read scope (Directory): Read the account and channel catalog across all seven platforms.
Good to know
- Maximum 100 pairs per call. The batch is one statement with an index probe per pair: 0.45ms for 50 pairs and 2.4ms for 100, measured on production.
- Results are returned in request order, one row per input pair, duplicates included. A pair that matched nothing is present with found false, because silence and failure look identical to a client otherwise.
- A handle can resolve to more than one company. companies is a list and the confidence on each says low when the handle is shared.
- The single-record form, GET /identity/graph, returns the full cross-platform footprint. This one deliberately returns only the company, because 100 full footprints in one response is a different product with a different cost.
Parameters
This endpoint takes no path or query parameters.
Request body
accountsstring[]requiredUp to 100 objects with platform and handle. Handles are normalised the same way the single lookup normalises them.
{
"accounts": [
"string"
]
}
Call it
Authenticate with a bearer token or the x-api-key header. Keys are server-to-server credentials. Never embed one in front-end code - call the API from your own backend and forward the result.
curl -X POST "https://crmsolid.com/data-api/v2/identity/graph/bulk" \
-H "Authorization: Bearer psk_live_..." \
-H "Content-Type: application/json" \
-d '{"accounts":["string"]}'
const res = await fetch("https://crmsolid.com/data-api/v2/identity/graph/bulk", {
method: "POST",
headers: {
Authorization: `Bearer ${process.env.CRM_SOLID_DATA_API_KEY}`,
"Content-Type": "application/json",
},
body: JSON.stringify({
"accounts": [
"string"
]
}),
});
if (!res.ok) {
const { error } = await res.json();
throw new Error(`${error.code}: ${error.message} (${error.request_id})`);
}
const { data, meta } = await res.json();
import json
import os
import requests
body = json.loads("""
{
"accounts": [
"string"
]
}
""")
res = requests.post(
"https://crmsolid.com/data-api/v2/identity/graph/bulk",
headers={"Authorization": f"Bearer {os.environ['CRM_SOLID_DATA_API_KEY']}"},
json=body,
timeout=30,
)
res.raise_for_status()
payload = res.json()
data, meta = payload["data"], payload["meta"]
Keys look like psk_live_... for production keys, psk_test_... for test keys and are minted in the panel.
What comes back
Success is { data, meta }. Failure is { error: { code, message, request_id } }. The body below is the spec's own example: the values in it are illustrative readings, not live numbers.
- Results
- 2 items
- Requested
- 2
- Resolved
- 1
{
"data": {
"results": [
{
"platform": "x",
"handle": "dropbox",
"found": true,
"companies": [
{
"slug": "dropbox",
"name": "Dropbox",
"website_domain": "dropbox.com",
"confidence": "high"
}
]
},
{
"platform": "bluesky",
"handle": "notacompany",
"found": false,
"companies": []
}
],
"requested": 2,
"resolved": 1
},
"meta": {
"request_id": "req_9f2c41a8b3d5",
"generated_at": "2026-08-23T09:14:02.317Z",
"took_ms": 42
}
}
The meta block
request_idstringrequiredUnique id for this request. Quote it in a support ticket.
generated_atstringrequiredServer time the response was produced.
took_msintegerrequiredMilliseconds spent server-side.
pagePageoptionalsourcestringoptionalWhich backend served the payload, for endpoints with more than one.
cache_age_sintegeroptionalAge of the underlying data in seconds. 0 for live reads.
When it fails
POST /identity/graph/bulk documents 7 failure statuses. Branch on error.code, which is stable and enumerated; message is prose and may change.
- 401Unauthorized
unauthorized | invalid_keyNo key was presented, or the key is unknown, revoked or expired.
- 402PaymentRequired
payment_required | subscription_inactiveThe key is valid but the plan behind it cannot serve the call: the included requests are spent and overage is switched off, capped or unfunded (payment_required), or the billing period lapsed and was not renewed (subscription_inactive). Retrying does not help; paying does. The X-Plan-* headers on this response say how far past the line you are.
Carries X-Plan, X-Plan-Limit, X-Plan-Overage, X-Plan-Period-End, X-Plan-Remaining.
- 403Forbidden
forbidden_scope | forbidden_ipThe key is valid but not allowed to make this call: it lacks the scope, or the request came from an address outside the key's allowlist.
- 422InvalidRequest
invalid_requestA parameter is malformed, out of range or mutually exclusive with another. `details` names the offending fields.
- 429RateLimited
rate_limited | quota_exceededEither the burst ceiling for the current minute or the daily quota is spent. Distinguish with the code: rate_limited clears within the minute, quota_exceeded does not clear until 00:00 UTC.
Carries Retry-After, X-Quota-Limit, X-Quota-Remaining, X-RateLimit-Limit, X-RateLimit-Remaining, X-RateLimit-Reset, X-Request-Id.
- 500InternalError
internal_errorSomething failed on our side. Internals are never leaked; quote the request id.
- 503Unavailable
upstream_timeout | upstream_error | not_configuredThe request could not be served right now. BRANCH ON error.code, not on the status: 'upstream_timeout' means a source was too slow (this is what a catalog query hitting its 15-second statement timeout returns, so it is reachable from any endpoint that reads the corpus, not only the live-scrape ones) and the same call is worth retrying with backoff - narrowing it with a smaller limit, a filtered scope or a less popular account makes it far less likely; 'upstream_error' means a source was unreachable, so back off further; 'not_configured' means the capability has no backing service in this deployment, and retrying will never help.
Every response carries X-Request-Id and meta.request_id. Quote it in support requests.
Coverage and limits
This endpoint is not platform-specific. Rate limits come from the tier on your key.
| Tier | Requests a minute | Requests a day | Live reads a minute |
|---|---|---|---|
| free | 30 | 1,000 | 5 |
| standard | 120 | 25,000 | 20 |
| pro | 600 | 250,000 | 60 |
| unlimited | 6,000 | 10,000,000 | 600 |
This call only draws on the ordinary per-minute and per-day columns. Every response reports where you stand in X-RateLimit-Limit, X-RateLimit-Remaining, X-RateLimit-Reset and the X-Plan headers.
Start calling it
A key takes a minute to mint in the panel, no card. The reference covers authentication, the envelope, scopes, rate limits and every error code in one page.
Reference path: /data-api/reference/identity-graph-bulk