API Documentation
One public endpoint turns a supported shortlink into its Final Result URL. No API key is required.
Endpoint
| Method | URL |
|---|---|
| POST | https://bypasslink.saurus.qzz.io/api/bypass |
Send a JSON body with Content-Type: application/json. Bodies larger than 4 KB are rejected.
Request body
| Field | Type | Description |
|---|---|---|
| url | string | Required. Public http or https URL, up to 2048 characters. Localhost and private networks are rejected. |
Response
{
"status": "success",
"result": "https://example.com/final-result",
"cached": false,
"stale": false,
"processTime": 326,
"requestId": "uuid",
"rate_limit": {
"used": 1,
"max": 5,
"remaining": 4,
"windowMinutes": 720
},
"creator": "Saurus"
}| Field | Description |
|---|---|
| status | "success" or "error". |
| result | The Final Result URL. |
| cached | Whether the result came from a cache. |
| stale | Whether a cached result may be out of date. |
| processTime | Processing time in milliseconds. |
| requestId | Unique ID for this request. Include it when reporting a problem. |
| rate_limit | Your usage in the current window: used, max, remaining, windowMinutes. |
| creator | Owner of the service. |
Error codes
{
"status": "error",
"code": "UPSTREAM_ERROR",
"message": "Bypass service temporarily unavailable.",
"requestId": "uuid"
}| Code | HTTP | Meaning |
|---|---|---|
| INVALID_REQUEST | 400 | The body is not valid JSON or has no url field. |
| INVALID_URL | 400 | The URL is not a valid public http(s) address. |
| PAYLOAD_TOO_LARGE | 413 | The request body exceeds 4 KB. |
| UNSUPPORTED_LINK | 422 | The link could not be processed. It may not be supported. |
| RATE_LIMITED | 429 | Request limit reached. Check the Retry-After header. |
| UPSTREAM_ERROR | 502 | The bypass service is temporarily unavailable. |
| MAINTENANCE | 503 | New requests are paused. The message field explains why. |
Rate limit
Each client can make 5 requests every 12 hours. Every response includes X-RateLimit-Limit and X-RateLimit-Remaining. Once the limit is reached the API answers with 429 and a Retry-After header in seconds.
Supported links
Linkvertise, SFL, Sub2Unlock, Sub4Unlock, Link2Unlock and other providers supported by the service.
Provider availability can change at any time. A link that is not supported returns UNSUPPORTED_LINK.
Examples
cURL
curl -X POST https://bypasslink.saurus.qzz.io/api/bypass \
-H "Content-Type: application/json" \
-d '{"url":"https://example.com/shortlink"}'JavaScript fetch
const response = await fetch(
"https://bypasslink.saurus.qzz.io/api/bypass",
{
method: "POST",
headers: {
"Content-Type": "application/json"
},
body: JSON.stringify({
url: "https://example.com/shortlink"
})
}
);
const data = await response.json();
console.log(data);Health check
GET https://bypasslink.saurus.qzz.io/api/health
{ "status": "ok", "service": "BypassLink" }The health endpoint stays available during maintenance.