The API Report CardAPI Index
Mason

Mason API

Maintenance coordination for residential property managers · thisismason.com

Mason publishes a public OpenAPI 3.1 contract and a Markdown guide for a read-only external API across work orders, calls, invoices, contacts, properties, and units. The gate is provisioning: one bearer token is issued by Mason to each customer account, with no self-serve key, webhooks, or SDKs.

Last verified: September 2026Real Estate & PropertyNO MCP
API GRADE
D+
VERIFIED SEP 2026

SCORECARD

ExistenceGOODPublic developer page at thisismason.com/docs/api-reference with a Markdown guide and an OpenAPI 3.1 contract covering 25 read operations.
AccessPOORBearer tokens are issued by Mason to customer accounts on request; no self-serve key page, sandbox credential, or published API pricing.
CoverageMIXEDReads across work orders, calls, texts, emails, invoices, estimates, contacts, properties, units, and scheduling; no writes and no webhooks.
AuthPOOROne account-scoped bearer token with no scopes, no OAuth, and no self-serve rotation; revocation goes through the vendor.
Docs & DXMIXEDPublic OpenAPI 3.1, a Markdown guide written for coding agents, and an llms.txt, but no SDKs and no response examples in the spec.
StabilityMIXEDThe v2 contract carries a content-derived revision id, but there is no changelog, deprecation policy, rate limit doc, or status page.
MCPNONENo official or community MCP server found for this platform.
Supergood turns hard-to-integrate enterprise software into clean REST APIs and MCP tools: stable endpoints, normalized JSON, managed auth.

Frequently asked questions

Mason scores D+ on Supergood's API Report Card. Mason publishes a public OpenAPI 3.1 contract and a Markdown guide for a read-only external API across work orders, calls, invoices, contacts, properties, and units. The gate is provisioning: one bearer token is issued by Mason to each customer account, with no self-serve key, webhooks, or SDKs.

Tried to integrate with Mason?
SOURCES
Every published operation is a GET, so integrators cannot create, assign, approve, or close work orders through the API, and no webhooks exist, so everything is polling. peterlohmann.com
Credentials are provisioned manually by the vendor: a single unscoped bearer token arrives by email, with no self-serve key generation, rotation, or revocation. peterlohmann.com
No rate limits are documented and a 40-request burst returned no limit headers; there is no changelog, status page, or public deprecation policy. peterlohmann.com
The support infrastructure is still developing and lacks the security of a mature, enterprise-grade support department, per a third-party review. bestcre.com
Initial data quality can be highly variable when Mason is first connected, requiring a human-in-the-loop failsafe, per a third-party review. bestcre.com