API

Build verified references into your own system.

The Reffolio API lets your product or internal tools request employment references, track them to consent, and pull back a verified, tamper-evident record — while Reffolio handles the referee emails, the candidate consent, and the sector-specific forms. Available on the Growth and Business plans.

Who it's for

Two ways teams build on Reffolio

Software vendors

Embed compliant reference-checking inside your ATS, HR or recruitment product — without building the verification, consent and tamper-evidence layer yourself.

  • Offer references as a feature your customers already trust
  • White-label the candidate and referee experience
  • One integration covers care, healthcare, education and social work

In-house teams

Connect Reffolio to the systems your agency, trust or authority already runs on — so references flow without anyone re-keying data.

  • Trigger references straight from your own workflow
  • No double-entry, no copy-paste between systems
  • Pull verified records into your compliance store automatically
Capabilities

What the API enables

Everything the dashboard does, available to your code.

Request from your system

Create a reference request with one call. Reffolio emails the previous employer a branded, secure link automatically.

Consent handled for you

The candidate is asked to consent before release — recorded with a timestamp. You never have to build the consent flow.

Real-time webhooks

Get a signed POST the moment a referee completes, consent is granted, or a reference is received. Polling is always available as a fallback.

Verified, tamper-evident records

Every reference comes back with a cryptographic hash and a permanent reference number — an inspection-ready record you can store.

Secure & org-scoped

Bearer-token keys scoped to one organisation, signed webhook deliveries, and access only ever to your own data.

Sector-aware forms

Care, healthcare, education and social work each have the right safeguarding questions — the API picks the correct form for you.

How it fits

Your system calls us. We handle the humans. You get the record.

1

You request

POST /v1/requests from your system with the candidate and previous employer.

2

We collect

Reffolio emails the referee, they complete the sector form, the candidate consents — all handled for you.

3

We notify

A signed webhook fires at each step, or you poll GET /v1/requests/{id} for status.

4

You receive

GET /v1/references/{id} returns the verified record, ready to store in your system.

Why not build it yourself

The hard parts are already done.

Reference-checking looks simple until you build it. Verifying that a referee is really the previous employer, capturing lawful candidate consent, sealing each record so it can’t be quietly changed, and shaping forms to CQC, NMC, HCPC, KCSIE and Social Work England — that’s the work. Reffolio has done it, so your team can ship an integration in days, not quarters.

Referee verificationWork-email checks and free-mail flagging on every request.
Consent & audit trailLawful basis recorded, every event timestamped.
Tamper-evidenceCryptographic hashing and permanent reference numbers.

Start building

Generate a key in the dashboard and read the docs, or talk to us about a deeper integration.