Skip to content
Drop Loop
Features

Everything a fair drop needs.

One API from entry to claim: verification in front, a verifiable draw in the middle, and automation, webhooks and auditability behind it.

01

One REST API for the whole lifecycle.

Catalog, drops, entries, wins, orders, notifications, subscriptions and webhooks are all resources on one versioned API, described in OpenAPI 3 with a generated TypeScript client.

The hosted storefront and admin portal use nothing you don’t get. Integrations authenticate with scoped API keys that carry a delegated subset of their owner’s permissions, are stored only as hashes and revoke at once. Every write is audited with who, what, when and from where.

resources/api/v1/{Resource}/list · create · update · delete
  • Itemvariants, stock, taxonomy
  • Lotterythe drop: window, counts, pools, rules
  • LotteryEntryone per user per drop, with quantity
  • LotteryWinrank, claim window, status
  • Ordercreated on claim, fulfilled by you
  • WebhookEndpointevents, secret, deliveries

Commit → draw → reveal

Commit
A random seed is generated at close; only its SHA-256 hash is stored.
Draw
Entrants are sorted and hashed; picks come from a source seeded with that seed.
Reveal
Results expose the seed, the entrant hash and the algorithm name.
Replay
A public endpoint re-runs the audited snapshot and reports a match.

02

Draws you can prove were fair.

The seed is fixed before the entrant list is known, so anyone can check that the winners follow from it — without trusting you or us.

Every draw also persists a complete audit record — the entrant snapshot and the random value behind every pick. Draws are idempotent by design: a crashed draw re-executes to the same winners, never a second set.

03

One person, one set of odds.

A drop is only fair if one person cannot be ten accounts. Entering requires a phone number verified by a one-time SMS code, reserved to exactly one account per host.

The reservation is enforced by the database rather than by a lookup that can race. Flagged accounts can browse but never enter or claim, and a per-host blocklist refuses emails, phones and addresses at registration, entry and claim.

Normalised before comparison

(701) 237-9173
+17012379173
701.237.9173
+17012379173
+1 701 237 9173
+17012379173
Three spellings, one accountverified

And the rest of a fair drop.

The parts that turn a draw into a release your team can run.

Fairness pools, entry rules and bonus odds

Split winner slots across percentage pools with eligibility rules — reserve a share for verified users, an invite list, a region, or people who entered similar drops but never won. Entry rules use the same vocabulary to gate who may enter at all.

Loyal-but-unlucky entrants can receive bonus tickets that improve their odds without ever letting one person win more units than their entries allow.

Claim windows, standby promotion and inventory

Winning grants a time-boxed option to purchase, not an obligation. A declined or expired claim promotes the next standby by rank, who gets a window of their own — with no manual re-draw.

Sizes are variants of one item with their own stock. Opening is inventory-gated, a claim creates an order and decrements stock, and a cancellation restores it and releases the win.

Webhooks and real-time

Every lifecycle event and any resource change can reach your https endpoint as an HMAC-signed POST, with exponential backoff, at-least-once delivery and a stable id to de-duplicate on.

Secrets are derived rather than stored and rotate with a version bump. In-app notifications are pushed live over SignalR; email, SMS and push fan out per type with per-user preferences.

A storefront: hosted or your own

The hosted storefront is white-labelled from your branding — palette, logo and favicon, down to the transactional email — and localised for your customers. It is built entirely on the public API.

Prefer your own? Anonymous, rate-limited endpoints serve every launched drop, its details, masked results and the verifier, so a storefront has something to show before it has a single user.

Operations-grade administration

A full admin portal covers the catalog, items and variants, the drop lifecycle, entrant and follower lists, exports, results and per-drop statistics — with staff interventions such as manual entries, disqualifications and closing early.

Multi-host and multi-tenant administration are built in, with permission-based access control, an entity event timeline, an operations snapshot of the background workers and per-host usage against your plan.

All of it, as an API

Authentication, resources, public endpoints, the webhook contract and draw verification — the developer overview.

Ship your next drop on the API.

Get a host provisioned, an API key issued and a webhook pointed at your stack — then run a real draw end to end.