{"id":28464,"date":"2025-12-03T10:45:23","date_gmt":"2025-12-03T10:45:23","guid":{"rendered":"http:\/\/localhost\/?p=28464"},"modified":"2025-12-03T10:45:23","modified_gmt":"2025-12-03T10:45:23","slug":"attackers-dont-need-to-breach-your-api-theyll-breach-the-tools-that-touch-it","status":"publish","type":"post","link":"https:\/\/zero.redgem.net\/?p=28464","title":{"rendered":"Attackers Don\u2019t Need to Breach Your API -They\u2019ll Breach the Tools That Touch It_WALLARMLAB:A1CCDD57B3B9FCE2EFB44AB344125C27"},"content":{"rendered":"<p>{&#8220;lastseen&#8221;:&#8221;2025-12-03T16:07:00&#8243;,&#8221;description&#8221;:&#8221;The API supply chain is the new security blind spot. Attackers no longer need to breach your APIs directly; they can target the third-party services that connect to them. These unmanaged dependencies are now the shortest path to your sensitive data. The recent Mixpanel incident is a stark reminder of that fact. \\n\\n## What Happened During the Mixpanel Incident? Why Does it Matter?\\n\\nIn November 2025, OpenAI revealed that cybercriminals successfully breached Mixpanel, one of its data analytics suppliers. OpenAI said that they were using Mixpanel for data analytics on their API. According to news reports, attackers accessed part of Mixpanel\u2019s systems, exporting data belonging to multiple organizations, including some of OpenAI\u2019s API user data. \\n\\nNow, the Mixpanel breach wasn\u2019t _technically_ an API compromise. But it can still teach us something about API security. It would be easy to dismiss this incident as just another supply chain breach. But it&#8217;s much more than that; it\u2019s further indication of the risk  that third-party APIs pose to modern organizations. \\n\\nHere\u2019s why it matters: \\n\\n  * **APIs create hidden supply chains:** SaaS integrations are a security blind spot. Every tool plugged into your core APIs expands your attack surface. That means that even if your API is secure, the tools integrated with it may not be. \\n  * **Attackers are following the data:** Services like Mixpanel store high-value contextual data. If attackers get hold of it, they get a roadmap to your core business logic and critical API endpoints. \\n  * **Your API security** \u2260 **your supply chain\u2019s security:** When your supply chain security is weak, your security is weak. Proactively assessing every tool touching your API traffic, from analytics SDKs to AI agents and gateways, is now a business imperative. \\n\\n\\n\\nThe key lesson here is that it\u2019s no longer enough to just secure APIs. Securing an API ecosystem now requires locking down: \\n\\n  * The API itself\\n  * The extended network of tools that consume, analyze, or automate it\\n  * Every token, secret, and log connected to it\\n\\n\\n\\nBut what does that actually mean for your security team\u2019s day-to-day operations? \\n\\n## Practical Takeaways for Security Teams\\n\\nAlthough protecting your APIs from supply chain risks might sound complicated, security teams can dramatically reduce risk with a few simple steps: \\n\\n  * **Map your API supply chain:** Inventory all third-party systems interacting with internal and external APIs. Include analytics tools, monitoring platforms, AI agents, RPA systems, low-code\/no-code integrations.\\n  * **Monitor what your vendors can access:** Understand what data flows into these systems. That includes authentication context, tokens, session IDs, behavioral analytics, and PII or metadata\\n  * **Define risk by data sensitivity, not by vendor brand:** Even trusted SaaS companies introduce risk. Use vendor tiers and minimum security requirements for any tools that touch your APIs. \\n  * **Threat models and tabletop exercises:** Run the scenarios and practice the response to supply chain compromises. Be prepared before the incident occurs. \\n\\n\\n\\n## How Wallarm Helps Reduce API Supply-Chain Risk\\n\\nWallarm can help you implement these measures. \\n\\n**Action**| **Wallarm\u2019s value**  \\n&#8212;|&#8212;  \\nUniversal API discovery across direct \\u0026 indirect traffic  | Wallarm identifies APIs exposed externally and APIs silently consumed by third-party vendors. This feature helps teams detect shadow app integrations and undocumented data pathways.  \\nProtect against API abuse, credential misuse \\u0026 token leakage  | Wallarm detects anomalous API interactions that may indicate token theft or indirect compromise. Meanwhile, continuous monitoring prevents attackers from exploiting data stolen from third-party systems.  \\nAPI posture management for vendor-connected APIs| Wallarm\u2019s platform provides visibility into:Real data flowing through APIsWho is calling themHow tokens, secrets, and metadata are being usedThis visibility helps teams enforce least-privilege access across their API ecosystem.  \\nHarden against future supply-chain attacks| Wallarm\u2019s automated API security testing evaluates the resilience of APIs against misuse, especially when attackers gain indirect insights through breaches like Mixpanel.  \\n  \\n## The Real Lesson of the Mixpanel Breach\\n\\nThe Mixpanel incident is a further confirmation that every API is part of a supply chain, and attackers are ready and willing to exploit that fact. \\n\\nSecuring your APIs is no longer enough; you must lock down the ecosystems orbiting them. Wallarm provides the full-stack API visibility and protection you need to make that shift. \\n\\nTo find out more about how Wallarm can help you lock down your API ecosystem, request a demo or talk to an expert today. \\n\\nThe post Attackers Don\u2019t Need to Breach Your API -They\u2019ll Breach the Tools That Touch It appeared first on Wallarm.&#8221;,&#8221;published&#8221;:&#8221;2025-12-03T14:19:39&#8243;,&#8221;modified&#8221;:&#8221;2025-12-03T14:19:39&#8243;,&#8221;type&#8221;:&#8221;wallarmlab&#8221;,&#8221;title&#8221;:&#8221;Attackers Don\u2019t Need to Breach Your API -They\u2019ll Breach the Tools That Touch It&#8221;,&#8221;source&#8221;:&#8221;&#8221;,&#8221;references&#8221;:&#8221;&#8221;,&#8221;id&#8221;:&#8221;WALLARMLAB:A1CCDD57B3B9FCE2EFB44AB344125C27&#8243;,&#8221;bulletinFamily&#8221;:&#8221;blog&#8221;,&#8221;cwe&#8221;:null,&#8221;cvelist&#8221;:[],&#8221;sourceData&#8221;:&#8221;&#8221;,&#8221;sourceHref&#8221;:&#8221;&#8221;,&#8221;cvss&#8221;:{&#8220;score&#8221;:0,&#8221;severity&#8221;:&#8221;NONE&#8221;,&#8221;vector&#8221;:&#8221;NONE&#8221;,&#8221;version&#8221;:&#8221;NONE&#8221;},&#8221;cvss2&#8243;:{},&#8221;cvss3&#8243;:{&#8220;version&#8221;:&#8221;&#8221;,&#8221;vectorString&#8221;:&#8221;&#8221;,&#8221;baseScore&#8221;:0,&#8221;baseSeverity&#8221;:&#8221;&#8221;,&#8221;attackVector&#8221;:&#8221;&#8221;,&#8221;attackComplexity&#8221;:&#8221;&#8221;,&#8221;privilegesRequired&#8221;:&#8221;&#8221;,&#8221;userInteraction&#8221;:&#8221;&#8221;,&#8221;scope&#8221;:&#8221;&#8221;,&#8221;confidentialityImpact&#8221;:&#8221;&#8221;,&#8221;integrityImpact&#8221;:&#8221;&#8221;,&#8221;availabilityImpact&#8221;:&#8221;&#8221;,&#8221;cvssV3&#8243;:{&#8220;version&#8221;:&#8221;&#8221;,&#8221;vectorString&#8221;:&#8221;&#8221;,&#8221;baseScore&#8221;:0,&#8221;baseSeverity&#8221;:&#8221;&#8221;,&#8221;attackVector&#8221;:&#8221;&#8221;,&#8221;attackComplexity&#8221;:&#8221;&#8221;,&#8221;privilegesRequired&#8221;:&#8221;&#8221;,&#8221;userInteraction&#8221;:&#8221;&#8221;,&#8221;scope&#8221;:&#8221;&#8221;,&#8221;confidentialityImpact&#8221;:&#8221;&#8221;,&#8221;integrityImpact&#8221;:&#8221;&#8221;,&#8221;availabilityImpact&#8221;:&#8221;&#8221;}},&#8221;href&#8221;:&#8221;https:\/\/lab.wallarm.com\/attackers-dont-need-to-breach-your-api-they-breach-the-tools-that-touch-it\/&#8221;,&#8221;category_name&#8221;:&#8221;News&#8221;,&#8221;post_link&#8221;:&#8221;&#8221;,&#8221;product&#8221;:&#8221;&#8221;,&#8221;version&#8221;:&#8221;&#8221;,&#8221;vendor&#8221;:&#8221;&#8221;,&#8221;ai_description&#8221;:&#8221;&#8221;,&#8221;ai_severity&#8221;:&#8221;&#8221;,&#8221;ai_vendor&#8221;:&#8221;&#8221;,&#8221;ai_product&#8221;:&#8221;&#8221;,&#8221;ai_version&#8221;:&#8221;&#8221;,&#8221;ai_score&#8221;:0}<\/p>\n","protected":false},"excerpt":{"rendered":"<p>{&#8220;lastseen&#8221;:&#8221;2025-12-03T16:07:00&#8243;,&#8221;description&#8221;:&#8221;The API supply chain is the new security blind spot. Attackers no longer need to breach your APIs directly; they can target the third-party services&#8230;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[4],"tags":[6,8,12,13,33,7,11,5,105],"class_list":["post-28464","post","type-post","status-publish","format-standard","hentry","category-category_news","tag-cve","tag-cvss","tag-exploit","tag-news","tag-none","tag-security","tag-tapic","tag-vulnerability","tag-wallarmlab"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.5 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Attackers Don\u2019t Need to Breach Your API -They\u2019ll Breach the Tools That Touch It_WALLARMLAB:A1CCDD57B3B9FCE2EFB44AB344125C27 - zero redgem<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/zero.redgem.net\/?p=28464\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Attackers Don\u2019t Need to Breach Your API -They\u2019ll Breach the Tools That Touch It_WALLARMLAB:A1CCDD57B3B9FCE2EFB44AB344125C27 - zero redgem\" \/>\n<meta property=\"og:description\" content=\"{&#8220;lastseen&#8221;:&#8221;2025-12-03T16:07:00&#8243;,&#8221;description&#8221;:&#8221;The API supply chain is the new security blind spot. Attackers no longer need to breach your APIs directly; they can target the third-party services...\" \/>\n<meta property=\"og:url\" content=\"https:\/\/zero.redgem.net\/?p=28464\" \/>\n<meta property=\"og:site_name\" content=\"zero redgem\" \/>\n<meta property=\"article:published_time\" content=\"2025-12-03T10:45:23+00:00\" \/>\n<meta name=\"author\" content=\"invoker\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"invoker\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=28464#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=28464\"},\"author\":{\"name\":\"invoker\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/person\\\/fbfeae8dfad117ac08a7621bee1a1dca\"},\"headline\":\"Attackers Don\u2019t Need to Breach Your API -They\u2019ll Breach the Tools That Touch It_WALLARMLAB:A1CCDD57B3B9FCE2EFB44AB344125C27\",\"datePublished\":\"2025-12-03T10:45:23+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=28464\"},\"wordCount\":911,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\"},\"keywords\":[\"CVE\",\"CVSS\",\"exploit\",\"news\",\"NONE\",\"Security\",\"tapic\",\"Vulnerability\",\"wallarmlab\"],\"articleSection\":[\"category_news\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/zero.redgem.net\\\/?p=28464#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=28464\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/?p=28464\",\"name\":\"Attackers Don\u2019t Need to Breach Your API -They\u2019ll Breach the Tools That Touch It_WALLARMLAB:A1CCDD57B3B9FCE2EFB44AB344125C27 - zero redgem\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#website\"},\"datePublished\":\"2025-12-03T10:45:23+00:00\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=28464#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/zero.redgem.net\\\/?p=28464\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=28464#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/zero.redgem.net\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Attackers Don\u2019t Need to Breach Your API -They\u2019ll Breach the Tools That Touch It_WALLARMLAB:A1CCDD57B3B9FCE2EFB44AB344125C27\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#website\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/\",\"name\":\"zero redgem\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/zero.redgem.net\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\",\"name\":\"zero redgem\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"\",\"contentUrl\":\"\",\"width\":191,\"height\":188,\"caption\":\"zero redgem\"},\"image\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/person\\\/fbfeae8dfad117ac08a7621bee1a1dca\",\"name\":\"invoker\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"caption\":\"invoker\"},\"sameAs\":[\"https:\\\/\\\/zero.redgem.net\"],\"url\":\"https:\\\/\\\/zero.redgem.net\\\/?author=1\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Attackers Don\u2019t Need to Breach Your API -They\u2019ll Breach the Tools That Touch It_WALLARMLAB:A1CCDD57B3B9FCE2EFB44AB344125C27 - zero redgem","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/zero.redgem.net\/?p=28464","og_locale":"en_US","og_type":"article","og_title":"Attackers Don\u2019t Need to Breach Your API -They\u2019ll Breach the Tools That Touch It_WALLARMLAB:A1CCDD57B3B9FCE2EFB44AB344125C27 - zero redgem","og_description":"{&#8220;lastseen&#8221;:&#8221;2025-12-03T16:07:00&#8243;,&#8221;description&#8221;:&#8221;The API supply chain is the new security blind spot. Attackers no longer need to breach your APIs directly; they can target the third-party services...","og_url":"https:\/\/zero.redgem.net\/?p=28464","og_site_name":"zero redgem","article_published_time":"2025-12-03T10:45:23+00:00","author":"invoker","twitter_card":"summary_large_image","twitter_misc":{"Written by":"invoker","Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/zero.redgem.net\/?p=28464#article","isPartOf":{"@id":"https:\/\/zero.redgem.net\/?p=28464"},"author":{"name":"invoker","@id":"https:\/\/zero.redgem.net\/#\/schema\/person\/fbfeae8dfad117ac08a7621bee1a1dca"},"headline":"Attackers Don\u2019t Need to Breach Your API -They\u2019ll Breach the Tools That Touch It_WALLARMLAB:A1CCDD57B3B9FCE2EFB44AB344125C27","datePublished":"2025-12-03T10:45:23+00:00","mainEntityOfPage":{"@id":"https:\/\/zero.redgem.net\/?p=28464"},"wordCount":911,"commentCount":0,"publisher":{"@id":"https:\/\/zero.redgem.net\/#organization"},"keywords":["CVE","CVSS","exploit","news","NONE","Security","tapic","Vulnerability","wallarmlab"],"articleSection":["category_news"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/zero.redgem.net\/?p=28464#respond"]}]},{"@type":"WebPage","@id":"https:\/\/zero.redgem.net\/?p=28464","url":"https:\/\/zero.redgem.net\/?p=28464","name":"Attackers Don\u2019t Need to Breach Your API -They\u2019ll Breach the Tools That Touch It_WALLARMLAB:A1CCDD57B3B9FCE2EFB44AB344125C27 - zero redgem","isPartOf":{"@id":"https:\/\/zero.redgem.net\/#website"},"datePublished":"2025-12-03T10:45:23+00:00","breadcrumb":{"@id":"https:\/\/zero.redgem.net\/?p=28464#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/zero.redgem.net\/?p=28464"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/zero.redgem.net\/?p=28464#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/zero.redgem.net\/"},{"@type":"ListItem","position":2,"name":"Attackers Don\u2019t Need to Breach Your API -They\u2019ll Breach the Tools That Touch It_WALLARMLAB:A1CCDD57B3B9FCE2EFB44AB344125C27"}]},{"@type":"WebSite","@id":"https:\/\/zero.redgem.net\/#website","url":"https:\/\/zero.redgem.net\/","name":"zero redgem","description":"","publisher":{"@id":"https:\/\/zero.redgem.net\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/zero.redgem.net\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/zero.redgem.net\/#organization","name":"zero redgem","url":"https:\/\/zero.redgem.net\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/zero.redgem.net\/#\/schema\/logo\/image\/","url":"","contentUrl":"","width":191,"height":188,"caption":"zero redgem"},"image":{"@id":"https:\/\/zero.redgem.net\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/zero.redgem.net\/#\/schema\/person\/fbfeae8dfad117ac08a7621bee1a1dca","name":"invoker","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","caption":"invoker"},"sameAs":["https:\/\/zero.redgem.net"],"url":"https:\/\/zero.redgem.net\/?author=1"}]}},"_links":{"self":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts\/28464","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=28464"}],"version-history":[{"count":0,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts\/28464\/revisions"}],"wp:attachment":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=28464"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=28464"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=28464"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}