Extensions & marketplace

Build on Throttle the way you'd build on a platform.

Build extensions as HTTP services with scoped access, signed events, dashboard panels, and storefront scripts, then install privately or publish them.

An extension is just a service

An extension is an HTTP service you run, described by a manifest: the scopes it needs, the events it subscribes to, the configuration it asks for at install, and — optionally — a panel it shows inside the Throttle dashboard. Install it and Throttle sets up a signed event feed to your service for that install. There’s no plugin runtime to learn and no code running inside our servers.

Klaviyo and ShipStation are built exactly this way.

Everything a connector needs

  • Scoped access. Extensions request only the scopes they need, from a set that can never include admin or staff powers. Merchants see and approve exactly that list.
  • Signed events. Each install gets its own webhook endpoint and secret, with the same signing, retries, and replay as any other webhook.
  • Dashboard panels. Show your UI inside Throttle in an iframe, with a short-lived signed identity token that says which workspace, application, and user is looking — and doubles as an API credential.
  • Storefront and checkout scripts. Ship buyer-facing JavaScript: sandboxed scripts may run on checkout; scripts that touch the page run on the storefront only, after review.
  • Install-time configuration from a schema you define, editable afterwards by the merchant.

Versioned like software

Every version is an immutable snapshot of the manifest, and each install is pinned to one. Upgrading is a deliberate step that grants exactly the new version’s scopes — never more by accident — and rolling back is supported.

Private first, public when ready

Install an extension privately in your own workspace while you build it. When it’s ready, publish it to the marketplace: listings go through review, publishers verify their domain, and merchants find it with search and install it through a guided wizard.

Operated, not abandoned

Throttle probes extensions with signed pings, alerts the publisher’s admins when deliveries fail, and suspends an extension that keeps dead-lettering, so a broken connector doesn’t silently drop a merchant’s data.

Good to know

  • Public listing requires review, and the publishing workspace must be enabled for the marketplace.
  • Installs aren’t upgraded automatically.
  • Publishing is covered by the Publisher Agreement.