来自 Shopee 官方资料快照 ·
- 当前资料结构化阅读页
- 固定快照已留存,可追溯
- 官方原文可核对
资料正文
§1 Open Platform Support Push Mechanism Partner Key
Dear Developer,
Please note the following changes:
Background
To enhance data security, Shopee Open Platform periodically resets the Partner Key for Open API. However, since the Push Mechanism previously shared the same Partner Key with Open API, this could cause massive push message delivery failures during Open API Partner Key resets, impacting sellers’ ability to receive critical notifications (e.g., order status updates, tracking number updates).
This upgrade introduces an independent Partner Key for the Push Mechanism, decoupling it from Open API Partner Key resets. Developers can also reset the Push Mechanism Partner Key independently to ensure service security.
Key Updates
- Add new independent Live Push Partner Key on Console > Push Mechanism > Set Push page.
Note:
- For apps that previously enabled Live Push, the system will automatically generate a Push Mechanism Partner Key matching their original Open API Partner Key.
- Open API Partner Key resets will NOT affect the Push Mechanism Partner Key. You need to maintain two separate Partner Keys for Open API and Push Mechanism.
- If you need to self reset the Push Mechanism Partner Key to ensure your service security, please click the Reset button and select the Effective Time to submit.
Note:
- The new push messages generated after the Effective Time will use the new Partner Key for signature generation, and historical unsent push messages will still use the old Partner Key for signature generation. Therefore, your system must support both old and new Partner Keys for signature verification for at least 1 day after resetting. Failure to do so may cause push messages send failures and disrupt seller operations.
Effective Date on Live:
2025.02.14
尊敬的开发者,
请留意以下变更:
背景
为了保障平台的数据安全,Shopee Open Platform 当前会定期重置 Open API 的 Partner Key。然而,由于 Push Mechanism 与 Open API 共享同一 Partner Key,在 Open API 的 Partner Key 重置期间,可能导致大量 Push 消息发送失败,影响商家及时获取订单状态、跟踪号更新等重要通知。
本次升级为 Push Mechanism 提供独立 Partner Key,使其不受 Open API Partner Key 重置影响,同时支持开发者自主重置 Push Mechanism Partner Key,确保自身服务安全性。
更新内容
- 在 Console > Push Mechanism > Set Push 页面,新增独立的 Live Push Partner Key。
注意:
- 历史已启用 Live Push 的应用,系统将自动生成与原本 Open API Partner Key 相同的 Push Mechanism Partner Key。
- 重置Open API Partner Key 时,Live Push Partner Key 将不会受到影响 (即:不会随之被重置),因此您需要在系统里为 Open API 和 Push Mechanism 分别维护两套 Partner Key。
- 若您需要自主重置 Push Mechanism Partner Key 以确保自身服务安全性,可以点击右侧的 Reset 按钮,选择 Effective Time,进行重置。
注意:
- Effective Time 后新产生的 Push Mechanism,将会使用新的 Partner Key 生成Sign,历史已经产生但是未推送成功的 Push Mechanism,仍然使用旧的 Partner Key 生成Sign。因此,重置 Push Mechanism Partner Key 后,您的系统需要确保至少 1 天内同时支持新旧 Partner Key 验证签名,避免推送失败,影响商家运营。
上线时间:
2025.02.14
