Build on TenderLock

Connect your finance, ERP and workflow systems with the REST API, plug your own AI agent straight into your procurement with MCP, and get notified in real time with webhooks.

Quick start

  1. Sign in and go to Settings → API & MCP.
  2. Create a key. Choose Read only or Read + write, and an expiry.
  3. Call the API with the key as a Bearer token:
curl https://tenderlock.co/api/v1/me \
  -H "Authorization: Bearer tl_live_YOUR_KEY"

Built-in governance

The same rules that protect your tenders in the app apply to every integration and agent:

  • Nothing is published, awarded or deleted through the API or MCP. Integrations create drafts; a named person reviews and publishes them in TenderLock.
  • Sealed means sealed. Bids cannot be read by anyone, including the API, until the closing date.
  • Emails are real. send_email sends straight away, as the person who created the key, from their connected mailbox if they have one. Use a read-only key if you don't want an agent to email anyone.
  • Roles still apply. Keys act with the permissions of the person who created them, for example who can see everyone's contacts or read the audit log.
  • Everything is logged. Each request is recorded against its key, and changes appear in the tender's audit trail.

Availability

PlanAccess
BusinessRead-only API and MCP
ProfessionalFull API and MCP (create drafts, add suppliers and contacts, log calls, send emails) and webhooks
EnterpriseFull access, plus higher limits by agreement

Before you renew. Before you appoint. Before you buy.
TenderLock it.

Run your first live tender free. No card required.