Rest Api is enabled by default (defined('REST') || define('REST', true) in env.php). To disable it, define REST as false:
defined('REST') || define('REST', true);
Authentication
Authentication is done with HTTP Authorization or Bearer tokens using any admin user credentials that has REST role permissions.
curl -H 'Authorization: Bearer mytoken' 'https://demo.vvveb.com/rest/posts/hello-world-1'
curl --user demo:demo 'https://demo.vvveb.com/rest/posts/hello-world-1'
Permissions
Permission can be controlled from admin user roles and can be set for both resource and action.
Open API
Open Api documentation is provided by the Open Api plugin https://plugins.vvveb.com/product/openapi
Next.js starter
Simple sample blog built with Next.js with REST Api https://github.com/givanz/nextjs-headless-rest-vvveb