One battle, with its seats
GET/admin/battles/:id
A battle belonging to another casino is a 404, not a 403 — the answer must
not confirm that the id exists.
Each seat carries its outcome, multiplier, the public playback URL of its recording, and the recorder's own account of it — which stage failed, the error, the frame count, the deadline and whether a callback ever arrived.
The provider session URL is masked: every caller gets game_url_host and
game_url_masked, and the full game_url appears only for a caller holding
battles.secrets. Opening it enters the player's own game session, so it is
a separate grant rather than part of battles.read.
The response carries Cache-Control: no-store, because with that grant the
body holds a live player session — do not put it in a client-side cache.
Permission: battles.read, plus battles.secrets for the unmasked URL
Request
Responses
- 200
- 400
- 401
- 403
- 404
- 503
The battle
X-Tenant-Id is missing
No session cookie, or it expired
The role lacks battles.read, or the caller is not a member of this casino
No such battle for this casino
The lobby is not available on this instance