# Houfy Open API > REST API for the Houfy direct-booking vacation rental marketplace: read and > manage listings, rates, availability, reservations and guest messaging. > Base URL https://api.houfy.com — JSON in and out. Every call needs two > headers: Authtoken (self-serve, account Settings & Privacy → API access > token) and Authkey (issued privately by Houfy — email info@houfy.com). > Rate limit: 60 requests per minute per API key. Booking events are pushed as HTTP GET webhooks to a callback URL registered in account settings (query params: notification_id, listing_id, log_object, unixtimestamp). Reservation events are instant; other changes batch every 10 minutes. Delivery is at-least-once within 24h — receivers must be idempotent. ## Docs - [Full API reference (markdown)](https://docs.houfy.com/houfy-openapi.md): every endpoint with request/response fields, types and examples - [OpenAPI 3.0 spec (YAML)](https://docs.houfy.com/json/swagger3.yaml): machine-readable spec, 21 endpoints - [Postman collection](https://docs.houfy.com/postman/houfy-openapi.postman_collection.json): importable, with per-field docs and example bodies - [Postman environment](https://docs.houfy.com/postman/houfy-openapi.postman_environment.json): base_url / authtoken / authkey variables ## Optional - [Interactive reference](https://docs.houfy.com/): human-facing Redoc documentation with try-it console