TypeScript SDK beta
View .mdBuild catalog, discovery, availability, and branded guest experiences with typed clients and explicit server/browser boundaries. The SDK build documented here targets Developer API v0.7.25 with the inline email-signup extension and supports 75 of its 77 operations. That includes Google guest sign-in, verified email signup, events and webhook destinations, software settings and account panels, and 18 early-access content operations for defining page fields, editing drafts, reviewing changes, and publishing. Early-access APIs require access to the matching service and SDK release.
Google guest sign-in uses the hosted authorization flow and same-origin SDK handlers. The older direct Google verification operation remains REST-only. Guest preferences use Kismet-hosted confirmation for TEST rehearsal and LIVE membership and email double opt-in; sign-in does not grant consent.
Install
Section titled “Install”The evaluation build documented here is not published to npm. Its package version is @kismet-tech/[email protected]. Request a compatible package and API access, or build and verify a package from the SDK repository. Install the supplied tarball and retain its manifest, which records the source commit, package version, and SHA-256 checksum. Older packages such as @kismet-tech/[email protected] do not include the hosted Google sign-in or content operations documented here. The earlier Google evaluation package does not include the manager-page server guard. Manager panels require the POST-body guard and the matching Kismet account host. The earlier panel.20260928.2 evaluation artifact remains valid for that transport but does not include the TEST offer capture helpers in this build. Offer capture also requires the matching API deployment and configured TEST access.
npm install "/absolute/path/to/kismet-sdk-<source-sha>.tgz"npx kismet initReplace <source-sha> with the full commit from the supplied manifest. The older npm alpha and latest tags do not provide this evaluation build. Package installation and scoped Developer API access are separate steps.
Published content and availability
Section titled “Published content and availability”import { createKismetClient } from '@kismet-tech/sdk/server';
const client = createKismetClient({ apiKey: process.env.KISMET_DEVELOPER_API_KEY!, collection: 'your-collection', baseUrl: process.env.KISMET_API_BASE!,});
const rentals = await client.vacationRental.list({ limit: 24 });const availability = await client.vacationRental.availability.get({ checkIn: '2027-01-11', checkOut: '2027-01-16', guests: 4,});Use @kismet-tech/sdk/contracts for server-safe DTOs, @kismet-tech/sdk/server for the explicit API client, @kismet-tech/sdk/next for same-origin guest-account handlers, and @kismet-tech/sdk/react for credential-free browser clients.
For canonical group filters and dated or undated group estimates, use the Catalog API family and group pricing guide. Current pricing coverage is base-rate-only: lowestStay remains null, so a single lowest qualifying stay price is not yet available. Preserve the Check availability state instead of choosing an observed estimate yourself.
Recipes and implementation tests
Section titled “Recipes and implementation tests”The SDK ships framework-neutral contracts, 17 complete developer recipes, exact field provenance, and a real-browser runner. Your components and routes remain custom; declarations tell the runner which component subtree owns each user outcome. Read Recipes, contracts, and implementation tests for the component pattern, plain-language rubric, save-triggered checks, and CI gate.
Branded guest experiences
Section titled “Branded guest experiences”Guest auth is a same-origin BFF flow. Your site owns every visible screen and cookie presentation; the SDK owns the Kismet token exchange, sealed session envelope, CSRF contract, and request validation.
import { createKismetGuestAuthNextHandlers, createKismetGuestAuthServerClient,} from '@kismet-tech/sdk/next';
const client = createKismetGuestAuthServerClient({ serverKey: process.env.KISMET_SERVER_KEY!, baseUrl: process.env.KISMET_API_BASE!, origin: process.env.NEXT_PUBLIC_SITE_URL!,});
export const kismetGuest = createKismetGuestAuthNextHandlers({ client, sessionSecret: process.env.KISMET_GUEST_SESSION_SECRET!, allowedOrigins: [process.env.NEXT_PUBLIC_SITE_URL!],});The browser then calls only same-origin routes for challenge, verify, session, refresh, logout, /guest/me, saves, and signed-in TEST booking requests.
Release status
Section titled “Release status”The SDK provides typed contracts, Node/Edge entry points, and server/browser auth boundaries. It is in account-scoped beta: installing the package does not grant Developer API access. Create a scoped installation and credential, then validate the operations your application uses against the intended environment. See platform status for integration boundaries and support.
See Install and test the SDK for setup and verification, and Developer API reference for the server contract.
Activity summaries are also available through REST; this SDK does not yet wrap that operation.