All API requests must be sent over HTTPS.
Authentication is provided to API implementors via the NowForce Authentication Service. This service follows the Oauth2 specification and provides services for both web server based applications and browser based applications.
Implementors will be assigned a orgid, username, password, client_id and client_secret value to associate with the implemented application. Authentication methods will utilize these in conjunction with user credentials to make requests for data.
A two step process allows an application to pass the user to the NowForce server for collection of user specific credentials. An authorization code is then issued which the application then exchanges for an access token. The access token is then passed as a parameter in further API data requests.
Retrieve Authorization Code
You can use https://www.base64encode.org/ to encode - make sure to put a semicolumn ; between the username and password
Response items: access_token