> ## Documentation Index
> Fetch the complete documentation index at: https://docs.sharedgraph.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Create a post or reply

> Create a post or reply. Required scope with bearer authority: `post:create`. Mutations carry intentId in the JSON body. Retry the exact same action with its original intentId; a different payload with that identifier returns intent_conflict. Bearer social calls may omit Origin; if supplied it must exactly match the network origin.



## OpenAPI

````yaml /openapi.json post /api/posts
openapi: 3.1.0
info:
  title: SharedGraph public application API
  version: pilot
  description: >-
    Pilot: breaking changes are possible and announced in the changelog.
    SharedGraph is a common social network used through independently operated
    applications. Supported integration: server-backed confidential OAuth client
    using authorization code with S256 PKCE. Anonymous public reads are a pilot
    convenience: 120 requests/minute per connecting address, with a tighter
    shared 30/minute events+reconcile budget. Signed-in views must preserve
    bearer safety rules and never fall back to anonymous after a refusal. No
    account-management, moderator, operator, registration or debug API is part
    of this reference. Provider browser helpers use account cookies; token
    endpoints use Basic; social private reads and mutations use bearer.
    x-app-generation is an application BFF session signal, not a core response
    header. Error catalog below records the pilot domain and OAuth protocol
    refusals; provider error descriptions are diagnostic text, not a stable
    machine identifier.
servers:
  - url: https://api.sharedgraph.com
    description: Hosted pilot network
security:
  - BearerAuth: []
tags:
  - name: Social
  - name: OAuth
  - name: Discovery
paths:
  /api/posts:
    post:
      tags:
        - Social
      summary: Create a post or reply
      description: >-
        Create a post or reply. Required scope with bearer authority:
        `post:create`. Mutations carry intentId in the JSON body. Retry the
        exact same action with its original intentId; a different payload with
        that identifier returns intent_conflict. Bearer social calls may omit
        Origin; if supplied it must exactly match the network origin.
      operationId: post_api_posts
      requestBody:
        required: true
        content:
          application/json:
            schema:
              $ref: '#/components/schemas/CreatePost'
      responses:
        '200':
          description: Successful response
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/PostReceipt'
        '400':
          description: Refusal; see the error catalog.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
        '401':
          description: Refusal; see the error catalog.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
        '403':
          description: Refusal; see the error catalog.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
        '404':
          description: Refusal; see the error catalog.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
        '405':
          description: Refusal; see the error catalog.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
        '409':
          description: Refusal; see the error catalog.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
        '413':
          description: Refusal; see the error catalog.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
        '415':
          description: Refusal; see the error catalog.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
        '429':
          description: Refusal; see the error catalog.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
        '500':
          description: Refusal; see the error catalog.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
        '503':
          description: Refusal; see the error catalog.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
      security:
        - BearerAuth: []
components:
  schemas:
    CreatePost:
      type: object
      properties:
        intentId:
          type: string
          pattern: ^[A-Za-z0-9_-]{1,100}$
        text:
          type: string
          minLength: 1
          maxLength: 5000
          pattern: \S
        audience:
          type: string
          enum:
            - public
        parentId:
          type: string
          minLength: 1
      required:
        - intentId
        - text
        - audience
      additionalProperties: false
    PostReceipt:
      type: object
      properties:
        post:
          type: object
          properties:
            id:
              type: string
              minLength: 1
            revision:
              type: integer
            status:
              type: string
              enum:
                - deleted
                - unavailable
          required:
            - id
            - revision
          additionalProperties: false
      required:
        - post
      additionalProperties: false
    Error:
      type: object
      properties:
        error:
          type: string
          minLength: 1
          enum:
            - unknown_or_immutable_field
            - invalid_text
            - invalid_json
            - intent_required
            - unsupported_audience
            - invalid_parent
            - revision_required
            - self_relation
            - self_block
            - invalid_report
            - invalid_cursor
            - authentication_required
            - auth_unavailable
            - authority_unavailable
            - capability_required
            - not_owner
            - interaction_unavailable
            - social_authority_required
            - not_found
            - intent_conflict
            - revision_conflict
            - post_deleted
            - post_unavailable
            - parent_unavailable
            - effect_mismatch
            - domain_plan_too_large
            - publishing_paused
            - pilot_rate_limited
            - protected_read_unavailable
            - protected_read_storage_unavailable
            - recovery_unavailable
            - domain_storage_unavailable
            - pilot_storage_unavailable
            - pilot_limits_unavailable
            - trusted_address_unavailable
            - origin_required
            - origin_mismatch
            - restriction_witness_required
            - restriction_witness_unavailable_or_incomplete
            - recovery_state_missing
            - recovery_publication_changed
            - recovery_quarantined
            - lifecycle_revision_conflict
            - witness_prepare_mismatch
            - ambiguous_acceptance_requires_independent_proof
            - witness_acceptance_mismatch
            - witness_finalize_unconfirmed
            - invalid_request
            - invalid_client
            - invalid_grant
            - invalid_scope
            - unsupported_grant_type
            - unsupported_response_type
            - access_denied
            - temporarily_unavailable
            - server_error
            - invalid_token
            - unsupported_token_type
            - invalid_target
            - invalid_signature
            - invalid_redirect_uri
            - invalid_request_uri
            - request_not_supported
            - request_uri_not_supported
            - login_required
            - interaction_required
            - account_selection_required
            - consent_required
        message:
          type: string
        error_description:
          type: string
        error_uri:
          type: string
          format: uri
      required:
        - error
      additionalProperties: false
  securitySchemes:
    BearerAuth:
      type: http
      scheme: bearer
      description: >-
        Audited access token bound to the current application, actor and
        immutable grant.

````

This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.