.png)
Tines Integration Guide
Connect Tines Stories, webhook triggers, outbound HTTP actions, and REST APIs with enterprise systems through Martini workflows and APIs.
Tines integration options at a glance
Tines provides a REST API for retrieving and managing supported platform resources, including Stories, Story Actions, Story Records, Teams, and Users. Its Stories can receive webhook-style HTTP requests and send outbound HTTP requests to Martini or other endpoints. API-token authentication is the documented baseline for Tines API access, while OAuth may apply to selected third-party integrations configured within Tines. Martini can consume the Tines REST API, expose REST endpoints for Tines HTTP actions, orchestrate enrichment and routing workflows, and apply validation, transformation, idempotency, retry, and monitoring logic. A dedicated Tines bulk API, GraphQL API, SOAP API, or direct database interface was not confirmed.
Common Tines integration patterns
Common Tines data objects used in integrations
Authentication and security considerations
API-token authentication
Tines documents API-token authentication for its REST API, generally using a Bearer token in the Authorization header. Martini can store the token in secure environment configuration and add it to outbound requests.
Secret handling
Keep tokens and webhook credentials out of workflow definitions, source control, URLs, and operational logs. Limit permissions to the required Tines team and operations, and rotate credentials according to organizational policy.
Endpoint protection
Protect Martini APIs that receive Tines callbacks with appropriate authentication, authorization, validation, and rate controls. OAuth may apply to selected third-party applications configured in Tines, but it should not be assumed for Tines REST API access.
Operational considerations for Tines integrations
Rate limits and pagination
Confirm tenant and plan limits, treat HTTP 429 responses as potentially retryable, and use controlled concurrency. Do not assume a collection response contains all Stories, Actions, Records, Teams, or Users.
Idempotency and duplicates
Webhook retries and workflow retries can repeat delivery. Derive stable idempotency keys, check prior processing, and use upsert or conditional operations to avoid duplicate incidents, issues, or notifications.
Schema and event coverage
Story payloads can differ by trigger and application integration. Validate required fields, isolate vendor-specific mappings, preserve source payloads where appropriate, and monitor changes to response fields and pagination behavior.
Testing and operations
Test authentication failures, authorization failures, validation errors, throttling, transient outages, and duplicate delivery. Capture response bodies and correlation identifiers, retry transient failures only, and route permanent failures to an operational exception path.
Why use Martini instead of scripts or point-to-point integrations?
Reusable orchestration
Martini separates Tines-specific API and webhook handling from canonical business logic, allowing the same validation, enrichment, routing, and target-writing workflows to be reused across security and operations use cases.
Controlled integration behavior
Instead of embedding point-to-point logic in individual Stories or scripts, Martini can expose governed APIs, apply authorization and business rules, manage idempotency, and coordinate multiple downstream systems.
Maintainability and operations
Workflows provide explicit mapping, retry, error, logging, and synchronization behavior. Secure environment configuration keeps credentials separate from implementation, while monitoring and structured exception paths support production troubleshooting.