API Governed integration and exposure boundary.
API is a Foundation App within the Batoi Cloud Platform that governs how platform capabilities are exposed, consumed, and integrated by external systems and services. API establishes the formal boundary between the internal control plane (BCP) and external execution environments.
API Lifecycle Management
Permission-Scoped Access
Identity-Aligned Security
Usage Controls
Policy Enforcement
Auditability
Identity
Authenticates API consumers
Policy
Governs API permissions and conditions
Projects
Scope API exposure
Audit
Records all API activity
Reports
Provide visibility into API usage
API ensures that no external system interacts with Foundation Apps or Studios directly.
All external interaction with the Batoi Cloud Platform - including Batoi Business Systems, partner solutions, and third-party services - occurs through:
APIs
Identity (SSO)
There are no alternate access paths.
External Systems and services
Integration partners
Platform engineers
Governance and security teams
Without a governed API boundary:
With API:
API is the technical enforcement layer that preserves architectural separation, governance consistency, and long-term portability across the Batoi ecosystem.