Several behaviours in Loyalife are configurable per program — including points-to-currency conversion rate, token lifetime, OTP expiry duration, OTP attempt limits, redemption thresholds, and rate limits. The values documented here reflect defaults or common configurations. For the exact values that apply to your integration, contact your Xoxoday implementation contact or reach out to support@xoxoday.com.
Base URL
All API endpoints share the same base domain:Authentication
Every endpoint (exceptGenerateAuthToken itself) requires a bearer token in the Authorization header: