For developers and agencies
The flights API for travel agencies and developers
One REST endpoint to search live fares, one to book — JSON in, JSON out. Run the same search and booking engine as our portal from your own site, app or back office, and pay from one prepaid balance.
- Approved access
- Keys locked to your server IPs
- Plan-based rate limits
- No IATA accreditation of your own
curl https://iata.co/api/v1/flights/search \
-H "Authorization: Bearer YOUR_API_KEY" \
-H "Content-Type: application/json" \
-d '{ "origin": "KHI", "destination": "DXB",
"departure_date": "2026-12-14", "adults": 1 }'
HTTP/1.1 200 OK
X-RateLimit-Limit: 60 X-RateLimit-Remaining: 59
{
"search_id": "srch_8f2a61c0",
"currency": "USD",
"flights": [
{ "id": "flt_01", "price": 148.20,
"legs": [{ "airline": "EK", "flight_no": "EK601",
"from": "KHI", "to": "DXB", "stops": 0 }] }
]
}Example request and response. Amounts shown in USD. The full reference is unlocked with your API key.
How the API works
Built for agencies that sell flights
The same live fares as the portal, with the controls a platform needs: approval, whitelisting and per-plan limits.
Approved access
Request access from your dashboard. Once approved you get your key and the docs.
Server whitelisting
A key only answers requests from the IP addresses you registered. A leaked key is useless elsewhere.
Plan-based rate limits
Each plan has a search quota and a per-minute limit. Every response tells you what is left.
Cached for speed
Identical searches inside a short window are answered from cache, so repeat lookups come back fast.
Endpoints
Search, price, book — then ticket
A small, predictable set of JSON endpoints. The full reference, with every field, is in the docs.
POST /v1/flights/searchStart a search for a route, dates, cabin and passengers. Returns a search id and the fares the suppliers offer.
GET /v1/flights/resultsPoll a search for more fares as suppliers answer, then read the full itinerary, baggage and fare rules.
POST /v1/bookingsRe-price the chosen fare with the supplier, then book it and pay from your prepaid balance.
GET /v1/bookings/:idRead a booking: its status, PNR, ticket numbers and the price charged to your balance.
Fares come from our connected flight suppliers — including the carriers in the airline directory — so coverage follows live supplier content, not a direct deal with each airline. The public API opens in a later phase; request access now and you are first in line when it does.
Getting started
How API access works
Access is reviewed by a person, so the platform stays fast and fair for everyone on it.
- 1
Create your free account
The same account as the portal. One login for bookings, balance and API.
- 2
Request API access
Tell us what you are building and which plan fits. A person reviews every request.
- 3
Get your key and whitelist your server
Once approved you receive your API key and the documentation. Add the IP addresses of the servers that will call us.
- 4
Go live on your plan
Search and book from your own code. Your plan sets the monthly searches and the requests per minute.
FAQ
Flight API questions
It is a REST API that runs the same live flight search and booking as our booking portal, from your own website, app or agency back office. You send JSON and get JSON back, and bookings are paid from the same prepaid balance.
Create a free account, request API access from your dashboard and tell us what you are building. A person reviews every request. Once it is approved you receive your API key and the full documentation.
No. You book through the platform from a prepaid balance, so you do not need your own IATA accreditation to search and book flights through the API.
Whatever our connected flight suppliers offer for your route and dates, including the airlines listed in our airline directory. Coverage follows live supplier content rather than a direct deal with each airline.
Each plan has a monthly search quota and a per-minute request limit. Every response carries headers that show your limit and what is left, and your dashboard shows your usage for the month. See the pricing page for how plans work.
An API key can be copied. By registering the IP addresses of your servers, the key only works from those machines, so a leaked key cannot be used to spend your balance or your search quota from anywhere else.




Free to join
Your first flight search is a minute away.
Open a free account, top up when you are ready, and request API access whenever you want to build.
- Free account
- Prepaid balance
- Keys locked to your server
- Plan-based limits