> ## Documentation Index
> Fetch the complete documentation index at: https://docs.orbit.devotel.io/llms.txt
> Use this file to discover all available pages before exploring further.

# Create a transform function

> Create an event-transform function: a transform-affecting DSL spec (an ordered list of set, default, copy, rename, remove, coalesce, lowercase, uppercase, trim, or drop_event ops over dot-paths) bound to a stage — source (every inbound event after ingest) or destination (a per-destination payload, scoped by destination_key). The spec is schema-validated and budget-audited (op count, path and value depth) before persistence, so a malformed or oversized spec is rejected with 400 rather than stored. Use validate first to check a spec without persisting. Names must be unique per tenant (409 on a clash). Requires an owner, admin, or developer role.



## OpenAPI

````yaml /openapi.yaml post /api/v1/cdp/transform-functions
openapi: 3.1.0
info:
  title: Devotel CPaaS API
  description: Orbit by Devotel — Communications Platform as a Service API
  version: 1.0.0
  contact:
    name: Devotel
    url: https://devotel.io
    email: support@devotel.io
  license:
    name: Proprietary
servers:
  - url: https://api.orbit.devotel.io
    description: Production
security:
  - Bearer: []
  - ApiKey: []
tags:
  - name: Messages
    description: >-
      Send and manage messages across all channels (SMS, WhatsApp, RCS, Email,
      Viber, etc.)
  - name: Agents
    description: AI agent creation, configuration, and execution
  - name: Voice
    description: Voice calls, IVR, conferencing, and SIP trunking
  - name: Webhooks
    description: Webhook endpoint management and delivery logs
  - name: Numbers
    description: Phone number search, provisioning, and configuration
  - name: Contacts
    description: Contact management, segmentation, and lifecycle tracking
  - name: Campaigns
    description: Marketing campaign orchestration and analytics
  - name: Flows
    description: Automation flow builder and execution engine
  - name: Templates
    description: Message template management and approval workflows
  - name: Settings
    description: Organization, channel, and user preference settings
  - name: Verify
    description: OTP generation and verification across channels
  - name: Push
    description: Push notification delivery via FCM and APNs
  - name: Telegram
    description: >-
      Telegram bring-your-own-bot channel: connect a bot, verify a chat against
      the shared sandbox bot, and read unified channel state. Production sends
      go through the Messaging API.
  - name: USSD
    description: >-
      Menu-driven USSD for feature phones: define a menu tree, simulate session
      steps, and host the tenant-scoped aggregator callback.
  - name: Integrations
    description: Third-party service connections and OAuth management
  - name: Files
    description: >-
      Server-to-server media upload, listing, retrieval, and deletion
      (signed-URL backed)
  - name: Messaging Services
    description: >-
      Twilio MessagingService-parity containers bundling sender pool, opt-out
      list, inbound webhook, and sticky-sender/geomatch flags
  - name: Sender Pools
    description: >-
      Group sending numbers into pools with a selection strategy (sticky /
      round-robin / random) for outbound sends
  - name: Opt-Out Lists
    description: >-
      Per-list STOP / HELP / START keyword sets and auto-response copy (Twilio
      Advanced Opt-Out parity)
  - name: SMPP
    description: Tenant BYO-SMPP bind credentials and upstream termination carriers
  - name: Commerce
    description: >-
      Unified omnichannel conversational-commerce: cart/checkout state machine,
      cross-channel payment reconciliation, hosted pay-by-link, native WhatsApp
      checkout, and agentic-checkout payment mandates
  - name: Orby
    description: >-
      In-dashboard Orby operator assistant: streamed assistant turns,
      conversation threads, product knowledge-base search, and the tool-action
      approval gate. Available to signed-in operators only (dashboard session
      auth — API-key requests are rejected).
paths:
  /api/v1/cdp/transform-functions:
    post:
      tags:
        - CDP
      summary: Create a transform function
      description: >-
        Create an event-transform function: a transform-affecting DSL spec (an
        ordered list of set, default, copy, rename, remove, coalesce, lowercase,
        uppercase, trim, or drop_event ops over dot-paths) bound to a stage —
        source (every inbound event after ingest) or destination (a
        per-destination payload, scoped by destination_key). The spec is
        schema-validated and budget-audited (op count, path and value depth)
        before persistence, so a malformed or oversized spec is rejected with
        400 rather than stored. Use validate first to check a spec without
        persisting. Names must be unique per tenant (409 on a clash). Requires
        an owner, admin, or developer role.
      operationId: createCdpTransformFunctions
      requestBody:
        required: true
        content:
          application/json:
            schema:
              type: object
              required:
                - name
                - stage
                - spec
              properties:
                name:
                  type: string
                  description: >-
                    Lowercase identifier for the function (letters, digits,
                    underscores; must start with a letter). Unique per tenant.
                  examples:
                    - normalize_event_names
                description:
                  type: string
                  nullable: true
                  description: >-
                    Optional human-readable note (max 500 chars) shown in the
                    rule builder.
                  examples:
                    - Snake-case all event names before downstream delivery
                stage:
                  type: string
                  enum:
                    - source
                    - destination
                  description: >-
                    Where the transform runs: `source` rewrites every inbound
                    event after ingest; `destination` rewrites the
                    per-destination payload just before delivery.
                  examples:
                    - source
                destination_key:
                  type: string
                  nullable: true
                  description: >-
                    Destination binding — required context when stage is
                    `destination`; null for a source-stage function.
                  examples:
                    - null
                spec:
                  type: object
                  description: >-
                    The declarative transform spec — `version` (currently 1)
                    plus an ordered `operations` array of bounded object ops
                    (set, default, copy, rename, remove, coalesce, lowercase,
                    uppercase, trim, drop_event) over dot-paths.
                  examples:
                    - version: 1
                      operations:
                        - op: set
                          path: event
                          value: order_completed
                        - op: lowercase
                          path: properties.sku
                enabled:
                  type: boolean
                  default: true
                  description: >-
                    Whether the pipeline applies the transform. Defaults to
                    true; set false to author ahead of activation.
                  examples:
                    - true
      responses:
        '200':
          description: Successful response.
        '201':
          description: >-
            The created transform function (xform_ id, name, stage,
            destination_key, spec, enabled, created_by, timestamps) in the
            standard `{ data, meta }` envelope.
        '400':
          $ref: '#/components/responses/StandardError'
        '404':
          $ref: '#/components/responses/StandardError'
        '422':
          $ref: '#/components/responses/StandardError'
        '429':
          $ref: '#/components/responses/RateLimitedResponse'
        '500':
          $ref: '#/components/responses/StandardError'
      security: []
components:
  responses:
    StandardError:
      description: >-
        Standard error envelope. `error.code` is machine-readable; see the
        [error reference](https://docs.orbit.devotel.io/reference/error-codes)
        for the catalogue.
      content:
        application/json:
          schema:
            type: object
            properties:
              error:
                type: object
                required:
                  - code
                  - message
                  - status
                properties:
                  code:
                    type: string
                    description: Machine-readable error code (e.g. INVALID_PHONE_NUMBER)
                  message:
                    type: string
                    description: Human-readable error description
                  status:
                    type: integer
                    description: HTTP status code
                  details:
                    type: object
                    additionalProperties: true
                    description: Additional context about the error
              meta:
                type: object
                properties:
                  request_id:
                    type: string
                  timestamp:
                    type: string
                    format: date-time
                  docs_url:
                    type: string
                    format: uri
                    description: Link to relevant error documentation
    RateLimitedResponse:
      description: >-
        Rate limit exceeded. Wait `error.retry_after` seconds (or read the
        `Retry-After` header) before retrying. Returned when the request would
        exceed the bucket identified by `X-RateLimit-Bucket`.
      headers:
        X-RateLimit-Limit:
          description: Total request quota for the current window.
          schema:
            type: integer
            minimum: 0
        X-RateLimit-Remaining:
          description: Requests remaining in the current window.
          schema:
            type: integer
            minimum: 0
        X-RateLimit-Reset:
          description: >-
            Absolute unix-epoch-seconds timestamp at which the current window
            resets.
          schema:
            type: integer
            minimum: 0
        X-RateLimit-Bucket:
          description: >-
            Name of the rate-limit bucket the request was bound by (e.g.
            `auth-write`, `money`, `agent-invoke`, or `custom:<max>/<window>`).
            Stripe-style — lets clients see which named cap they hit.
          schema:
            type: string
        RateLimit-Limit:
          description: >-
            draft-ietf-httpapi-ratelimit-headers no-prefix mirror of
            `X-RateLimit-Limit`. Some SDKs read only this form.
          schema:
            type: integer
            minimum: 0
        RateLimit-Remaining:
          description: >-
            draft-ietf-httpapi-ratelimit-headers no-prefix mirror of
            `X-RateLimit-Remaining`.
          schema:
            type: integer
            minimum: 0
        RateLimit-Reset:
          description: >-
            draft-ietf-httpapi-ratelimit-headers no-prefix mirror — delta
            seconds from now until the window resets (NOT epoch).
          schema:
            type: integer
            minimum: 0
        Retry-After:
          description: >-
            RFC 7231 §7.1.3 — number of seconds the client should wait before
            retrying.
          schema:
            type: integer
            minimum: 1
      content:
        application/json:
          schema:
            type: object
            properties:
              error:
                type: object
                required:
                  - code
                  - message
                  - status
                  - retry_after
                properties:
                  code:
                    type: string
                    enum:
                      - RATE_LIMITED
                    description: >-
                      Always `RATE_LIMITED` — the global request-limiter 429.
                      Distinct from `RATE_LIMIT_EXCEEDED`, the live
                      per-recipient/per-tenant/per-resource frequency-cap 429
                      (not retired).
                  message:
                    type: string
                  status:
                    type: integer
                    enum:
                      - 429
                  retry_after:
                    type: integer
                    minimum: 1
                    description: >-
                      Seconds to wait before retrying. Mirrors `Retry-After`
                      header.
              meta:
                type: object
                properties:
                  request_id:
                    type: string
                  timestamp:
                    type: string
                    format: date-time
                  docs_url:
                    type: string
                    format: uri
  securitySchemes:
    Bearer:
      type: http
      scheme: bearer
      bearerFormat: JWT
      description: Dashboard JWT token from Clerk
    ApiKey:
      type: apiKey
      name: X-API-Key
      in: header
      description: Server-to-server API key (dv_live_sk_*)

````

This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.