> For clean Markdown of any page, append .md to the page URL.
> For a complete documentation index, see https://platform.bctrl.ai/llms.txt.
> For AI client integration (Claude Code, Cursor, etc.), connect to the MCP server at https://platform.bctrl.ai/_mcp/server.

# Create a hosted or embedded view

POST https://api.bctrl.ai/v1/views
Content-Type: application/json

Mint a scoped, component-gated hosted page or origin-restricted iframe composition. The response contains the bearer token once; keep it private.

Reference: https://platform.bctrl.ai/api/api-reference/views/create

## Authentication

- `Authorization` header (bearer token, required) — Use Bearer \<api-key>.

## Servers

- `https://api.bctrl.ai` (Production, default)
- `http://localhost:8787` (Local development gateway)

## Request

### Headers

- `BCTRL-Subaccount-Id` (string, optional) — Optional effective subaccount context for organization API keys. Subaccount API keys are already scoped and cannot use this header to act as another subaccount.

### Body (application/json)

- `scope` (object or object or object, required)
  - ViewScopeSpaceInput
    - `spaceId` (string, required) — Unique space identifier generated by BCTRL.
    - `runtimeIds` (list of string, optional)
  - ViewScopeRuntimeInput
    - `runtimeId` (string, required) — Unique runtime identifier generated by BCTRL.
  - ViewScopeRunInput
    - `runId` (string, required) — Unique run identifier generated by BCTRL.
- `components` (object, optional) — Optional content and notification surfaces for the View.
  - `bell` (boolean, optional, default: true) — Show the in-View notification and action center.
  - `events` (boolean, optional, default: false) — Include runtime event history.
  - `recordings` (boolean, optional, default: true) — Include runtime recordings.
  - `trace` (boolean, optional, default: true) — Include runtime traces.
- `control` (boolean, optional, default: true) — Allow live browser interaction and actions from the notification center.
- `expiresInSeconds` (integer, optional, default: 28800) — View lifetime in seconds. Defaults to 8 hours; maximum 30 days.
- `presentation` (object, optional) — Hosted presentation by default; use embedded with explicit allowed origins.
  - `mode`: `embedded` (embedded)
    - `allowedOrigins` (list of string, required)
  - `mode`: `hosted` (hosted)

## Response

### 201

Created

- `object or object`
  - HostedViewCreateResponse
    - `branding` (object, required)
      - `logo` (string, required, nullable)
      - `productName` (string, required)
      - `showPoweredBy` (boolean, required)
      - `tokens` (object, required)
        - `accent` (string, required)
        - `accentBorder` (string, required)
        - `accentSoft` (string, required)
        - `bg` (string, required)
        - `borderStrong` (string, required)
        - `hairline` (string, required)
        - `inset` (string, required)
        - `panel` (string, required)
        - `surfaceRaised` (string, required)
        - `text` (string, required)
        - `textFaint` (string, required)
        - `textMuted` (string, required)
    - `components` (object, required)
      - `bell` (boolean, required)
      - `events` (boolean, required)
      - `recordings` (boolean, required)
      - `trace` (boolean, required)
    - `control` (boolean, required)
    - `createdAt` (datetime, required) — RFC 3339 timestamp with a UTC offset.
    - `expiresAt` (datetime, required) — RFC 3339 timestamp with a UTC offset.
    - `id` (string, required)
    - `presentation` (object, required)
    - `scope` (object or object or object, required)
      - ViewScopeSpace
        - `spaceId` (string, required) — Unique space identifier generated by BCTRL.
        - `runtimeIds` (list of string, optional)
      - ViewScopeRuntime
        - `runtimeId` (string, required) — Unique runtime identifier generated by BCTRL.
      - ViewScopeRun
        - `runId` (string, required) — Unique run identifier generated by BCTRL.
    - `token` (string, required) — Short-lived bearer token returned once when a view is created.
    - `url` (string, required)
  - EmbeddedViewCreateResponse
    - `branding` (object, required)
      - `logo` (string, required, nullable)
      - `productName` (string, required)
      - `showPoweredBy` (boolean, required)
      - `tokens` (object, required)
        - `accent` (string, required)
        - `accentBorder` (string, required)
        - `accentSoft` (string, required)
        - `bg` (string, required)
        - `borderStrong` (string, required)
        - `hairline` (string, required)
        - `inset` (string, required)
        - `panel` (string, required)
        - `surfaceRaised` (string, required)
        - `text` (string, required)
        - `textFaint` (string, required)
        - `textMuted` (string, required)
    - `components` (object, required)
      - `bell` (boolean, required)
      - `events` (boolean, required)
      - `recordings` (boolean, required)
      - `trace` (boolean, required)
    - `control` (boolean, required)
    - `createdAt` (datetime, required) — RFC 3339 timestamp with a UTC offset.
    - `expiresAt` (datetime, required) — RFC 3339 timestamp with a UTC offset.
    - `id` (string, required)
    - `presentation` (object, required)
      - `allowedOrigins` (list of any, required)
      - `mode` ("embedded", required)
    - `scope` (object or object or object, required)
      - ViewScopeSpace
        - `spaceId` (string, required) — Unique space identifier generated by BCTRL.
        - `runtimeIds` (list of string, optional)
      - ViewScopeRuntime
        - `runtimeId` (string, required) — Unique runtime identifier generated by BCTRL.
      - ViewScopeRun
        - `runId` (string, required) — Unique run identifier generated by BCTRL.
    - `token` (string, required) — Short-lived bearer token returned once when a view is created.
    - `url` (string, required)

## Examples

**Request**

```json
{
  "scope": {
    "spaceId": "string"
  }
}
```

**Response**

```json
{
  "branding": {
    "logo": "string",
    "productName": "string",
    "showPoweredBy": true,
    "tokens": {
      "accent": "string",
      "accentBorder": "string",
      "accentSoft": "string",
      "bg": "string",
      "borderStrong": "string",
      "hairline": "string",
      "inset": "string",
      "panel": "string",
      "surfaceRaised": "string",
      "text": "string",
      "textFaint": "string",
      "textMuted": "string"
    }
  },
  "components": {
    "bell": true,
    "events": true,
    "recordings": true,
    "trace": true
  },
  "control": true,
  "createdAt": "2026-07-26T12:00:00Z",
  "expiresAt": "2026-07-26T12:00:00Z",
  "id": "string",
  "presentation": {
    "mode": "string"
  },
  "scope": {
    "runtimeId": "rt_AAAAAAAAAAAAAAAAAAAAAA"
  },
  "token": "string",
  "url": "string"
}
```

**SDK Code**

```python
import requests

url = "https://api.bctrl.ai/v1/views"

payload = { "scope": { "spaceId": "string" } }
headers = {
    "Authorization": "Bearer <token>",
    "Content-Type": "application/json"
}

response = requests.post(url, json=payload, headers=headers)

print(response.json())
```

```javascript
const url = 'https://api.bctrl.ai/v1/views';
const options = {
  method: 'POST',
  headers: {Authorization: 'Bearer <token>', 'Content-Type': 'application/json'},
  body: '{"scope":{"spaceId":"string"}}'
};

try {
  const response = await fetch(url, options);
  const data = await response.json();
  console.log(data);
} catch (error) {
  console.error(error);
}
```

```go
package main

import (
	"fmt"
	"strings"
	"net/http"
	"io"
)

func main() {

	url := "https://api.bctrl.ai/v1/views"

	payload := strings.NewReader("{\n  \"scope\": {\n    \"spaceId\": \"string\"\n  }\n}")

	req, _ := http.NewRequest("POST", url, payload)

	req.Header.Add("Authorization", "Bearer <token>")
	req.Header.Add("Content-Type", "application/json")

	res, _ := http.DefaultClient.Do(req)

	defer res.Body.Close()
	body, _ := io.ReadAll(res.Body)

	fmt.Println(res)
	fmt.Println(string(body))

}
```

```ruby
require 'uri'
require 'net/http'

url = URI("https://api.bctrl.ai/v1/views")

http = Net::HTTP.new(url.host, url.port)
http.use_ssl = true

request = Net::HTTP::Post.new(url)
request["Authorization"] = 'Bearer <token>'
request["Content-Type"] = 'application/json'
request.body = "{\n  \"scope\": {\n    \"spaceId\": \"string\"\n  }\n}"

response = http.request(request)
puts response.read_body
```

```java
import com.mashape.unirest.http.HttpResponse;
import com.mashape.unirest.http.Unirest;

HttpResponse<String> response = Unirest.post("https://api.bctrl.ai/v1/views")
  .header("Authorization", "Bearer <token>")
  .header("Content-Type", "application/json")
  .body("{\n  \"scope\": {\n    \"spaceId\": \"string\"\n  }\n}")
  .asString();
```

```php
<?php
require_once('vendor/autoload.php');

$client = new \GuzzleHttp\Client();

$response = $client->request('POST', 'https://api.bctrl.ai/v1/views', [
  'body' => '{
  "scope": {
    "spaceId": "string"
  }
}',
  'headers' => [
    'Authorization' => 'Bearer <token>',
    'Content-Type' => 'application/json',
  ],
]);

echo $response->getBody();
```

```csharp
using RestSharp;

var client = new RestClient("https://api.bctrl.ai/v1/views");
var request = new RestRequest(Method.POST);
request.AddHeader("Authorization", "Bearer <token>");
request.AddHeader("Content-Type", "application/json");
request.AddParameter("application/json", "{\n  \"scope\": {\n    \"spaceId\": \"string\"\n  }\n}", ParameterType.RequestBody);
IRestResponse response = client.Execute(request);
```

```swift
import Foundation

let headers = [
  "Authorization": "Bearer <token>",
  "Content-Type": "application/json"
]
let parameters = ["scope": ["spaceId": "string"]] as [String : Any]

let postData = JSONSerialization.data(withJSONObject: parameters, options: [])

let request = NSMutableURLRequest(url: NSURL(string: "https://api.bctrl.ai/v1/views")! as URL,
                                        cachePolicy: .useProtocolCachePolicy,
                                    timeoutInterval: 10.0)
request.httpMethod = "POST"
request.allHTTPHeaderFields = headers
request.httpBody = postData as Data

let session = URLSession.shared
let dataTask = session.dataTask(with: request as URLRequest, completionHandler: { (data, response, error) -> Void in
  if (error != nil) {
    print(error as Any)
  } else {
    let httpResponse = response as? HTTPURLResponse
    print(httpResponse)
  }
})

dataTask.resume()
```