Integrations and API
XyReg is designed to sit inside an existing toolchain rather than replace it.
Authentication
The API uses bearer tokens issued per integration from Settings → API. Tokens are scoped to specific resources and can be revoked individually; every API call is written to the same audit trail as UI actions.
Core endpoints
- Documents — list, retrieve, create drafts and fetch approved revisions.
- Requirements and risks — read and write items in the traceability model.
- CAPA and complaints — create records from external ticketing or support tools.
- Projects — read project metadata, status and compliance posture.
Webhooks and events
Subscribe to events such as document approved, CAPA opened, risk control changed or revalidation required, and route them to Slack, Teams or your own service.
Slack assistant
Install the XyReg Slack app to ask Cortex questions, receive approval requests and action them without opening the workspace. Approvals still require re-authentication and a signature.
