> ## Documentation Index
> Fetch the complete documentation index at: https://docs.kairos.trade/llms.txt
> Use this file to discover all available pages before exploring further.

# Get last-known prices for equity/forex/commodity symbols

> Returns last-known prices for a fixed allow-list of stock, ETF, forex, and commodity symbols (e.g. AAPL, SPY, EURUSD, XAUUSD), mapped internally to their upstream tickers. A request is served straight from cache only if every requested symbol is already cached. Otherwise, missing symbols are fetched and merged into the existing cache, and only the newly-fetched subset is returned with `cached: false` — symbols already warm in the cache are NOT re-included in that response body (the endpoint returns either the full cached hit set with `cached: true`, or just the freshly-fetched symbols with `cached: false`, never a merge of both in one response). Returns prices even when markets are closed (uses the last regular-session print) so the UI is never blank outside trading hours. **Auth differs from every other endpoint in this router**: this accepts a first-party session JWT (`Authorization: Bearer ...`) or an internal admin credential — it does **not** accept the `X-Client-Id`/`X-Api-Key`/ `X-Api-Secret` API-key headers that the rest of `/markets/*` accepts.




## OpenAPI

````yaml /openapi/data-api.yaml get /markets/equity/snapshot
openapi: 3.1.0
info:
  title: Kairos Data API
  version: 1.0.0
  summary: >-
    The full Kairos data plane — markets, candles, trades, search, discover,
    sports, trader analytics, and PnL.
  description: |
    The Kairos Data API at `data.kairos.trade` is the platform's primary data
    plane: market metadata and prices, OHLCV candles, live venue trade proxies,
    normalized trade history, full-text search, discovery feeds, the sports
    catalog, public trader analytics, and account PnL.

    ## Authentication

    Most endpoints accept a Kairos **API key** (`X-Client-Id` + `X-Api-Key` +
    `X-Api-Secret`, all three) or a first-party session JWT. Endpoints tagged
    `public` (trader analytics, provider configs, several sports feeds) need
    no credentials at all. Some endpoints additionally require an API-key
    **scope** (`trade:read`, `position:read`) — stated per operation.

    For high-volume market-data consumption (candles/trades/metadata at
    scale), prefer the dedicated **Market Data API** at `md.kairos.trade` —
    it has higher budgets, ETag caching, and a binary candle format.

    ## Rate limits

    Rate limits use a sliding window keyed on the authenticated user (JWT
    `sub`) or, for anonymous callers, the trusted client IP. Routes belong to
    a named **bucket** (`x-kairos-bucket`) whose per-minute budget is shared
    by every route in it; routes with no bucket run under the service default
    of 100/minute. `x-kairos-rate-limit` states the bucket's compile-time
    default — operators can raise or lower a bucket at runtime, so treat the
    documented number as the baseline, not a contract. 429 responses carry
    `Retry-After` and `X-RateLimit-*`.

    ## Conventions

    - Prices are on the **0–100 cents scale** unless a field says otherwise
      (trader-analytics position/trade prices use the 0–1 scale; each field's
      description states its scale).
    - Errors: `{"detail": "<message>"}` for handler errors; FastAPI's
      standard validation envelope for 422s. Errors surfaced from a venue
      adapter instead use `{"error", "provider", "operation", "message"}` —
      see `DataProviderError`. Unhandled failures always return the generic
      500 body; internal details are logged, never returned.
    - Every request body is capped at 8 MiB service-wide (413).
  contact:
    name: Kairos
    url: https://app.kairos.trade/docs/api-reference
  termsOfService: https://kairos.trade/terms
servers:
  - url: https://data.kairos.trade
    description: Production
  - url: https://staging-data.kairos.trade
    description: Staging
security:
  - apiKeyClientId: []
    apiKeyKey: []
    apiKeySecret: []
paths:
  /markets/equity/snapshot:
    get:
      tags:
        - Markets
      summary: Get last-known prices for equity/forex/commodity symbols
      description: >
        Returns last-known prices for a fixed allow-list of stock, ETF, forex,
        and commodity symbols (e.g. AAPL, SPY, EURUSD, XAUUSD), mapped
        internally to their upstream tickers. A request is served straight from
        cache only if every requested symbol is already cached. Otherwise,
        missing symbols are fetched and merged into the existing cache, and only
        the newly-fetched subset is returned with `cached: false` — symbols
        already warm in the cache are NOT re-included in that response body (the
        endpoint returns either the full cached hit set with `cached: true`, or
        just the freshly-fetched symbols with `cached: false`, never a merge of
        both in one response). Returns prices even when markets are closed (uses
        the last regular-session print) so the UI is never blank outside trading
        hours. **Auth differs from every other endpoint in this router**: this
        accepts a first-party session JWT (`Authorization: Bearer ...`) or an
        internal admin credential — it does **not** accept the
        `X-Client-Id`/`X-Api-Key`/ `X-Api-Secret` API-key headers that the rest
        of `/markets/*` accepts.
      operationId: getEquitySnapshot
      parameters:
        - name: symbols
          in: query
          required: true
          schema:
            type: string
          description: >
            Comma-separated symbols (case-insensitive, upper-cased server-side).
            Must be a subset of: AAPL, TSLA, MSFT, GOOGL, AMZN, META, NVDA,
            NFLX, PLTR, OPEN, RKLB, ABNB, COIN, HOOD, SPY, QQQ, EWY, VXX,
            EURUSD, GBPUSD, USDCAD, USDJPY, USDKRW, XAUUSD, XAGUSD, WTI, CC,
            NGD.
          example: AAPL,TSLA,EURUSD
      responses:
        '200':
          description: Last-known prices for the requested symbols.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/MarketsEquitySnapshotResponse'
        '400':
          description: No symbols given, or a symbol outside the supported allow-list.
          content:
            application/json:
              schema:
                type: object
                properties:
                  detail:
                    type: string
                    example: 'Invalid symbol: DOGEUSD. Must be one of: [...]'
        '401':
          $ref: '#/components/responses/DataUnauthorized'
        '403':
          $ref: '#/components/responses/DataForbidden'
        '422':
          $ref: '#/components/responses/DataValidationError'
        '429':
          $ref: '#/components/responses/DataRateLimited'
      security:
        - bearerAuth: []
components:
  schemas:
    MarketsEquitySnapshotResponse:
      type: object
      required:
        - prices
        - cached
      properties:
        prices:
          type: object
          description: >-
            Keyed by the requested (upper-cased) symbol. Either the full cache
            hit set or just the freshly-fetched subset — see `cached`.
          additionalProperties:
            $ref: '#/components/schemas/MarketsEquityPrice'
        cached:
          type: boolean
          description: >-
            True only if every requested symbol was already cached and `prices`
            is that full cached set. False means `prices` contains only symbols
            that had to be freshly fetched for this request.
    MarketsEquityPrice:
      type: object
      properties:
        symbol:
          type: string
          description: >-
            The internal (Kairos-side) symbol, which may differ from the
            upstream ticker.
          example: AAPL
        price:
          type: number
          example: 231.45
        previousClose:
          type:
            - number
            - 'null'
        currency:
          type: string
          default: USD
        marketState:
          type: string
          example: REGULAR
        timestamp:
          type: integer
          description: Epoch milliseconds of the quote (regularMarketTime * 1000).
    DataError:
      type: object
      description: Handler error envelope (FastAPI HTTPException).
      required:
        - detail
      properties:
        detail:
          type: string
          description: Human-readable error message.
          example: Invalid provider
  responses:
    DataUnauthorized:
      description: >
        No valid credential presented — missing/invalid API-key headers, or an
        invalid/expired session token.
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/DataError'
          example:
            detail: Not authenticated
    DataForbidden:
      description: >
        Authenticated but not permitted. Three distinct causes: the session user
        is not invited

        (`Invite required`), the API key lacks the operation's scope, or API-key
        access to the

        requested venue is switched off (`API access is disabled for
        <provider>`). Admin and API-key

        callers bypass the invite check; session and admin callers bypass scope
        and venue checks.
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/DataError'
          example:
            detail: Invite required
    DataValidationError:
      description: Request failed FastAPI parameter validation.
      content:
        application/json:
          schema:
            type: object
            required:
              - detail
            properties:
              detail:
                type: array
                description: >-
                  One entry per failed field, with location, message, and error
                  type.
                items:
                  type: object
                  additionalProperties: true
    DataRateLimited:
      description: >
        Rate limit exceeded for this route's sliding window, keyed on the
        session `sub` when

        authenticated and on the trusted client IP otherwise. Honor
        `Retry-After`. A per-API-key

        data ceiling (set per credential) rejects with `{"detail": "API key data
        rate limit

        exceeded"}` instead of the `error` envelope below.
      headers:
        Retry-After:
          schema:
            type: integer
        X-RateLimit-Limit:
          schema:
            type: integer
        X-RateLimit-Remaining:
          schema:
            type: integer
        X-RateLimit-Reset:
          schema:
            type: integer
      content:
        application/json:
          schema:
            type: object
            properties:
              error:
                type: string
                example: 'Rate limit exceeded: 100 per 1 minute'
  securitySchemes:
    apiKeyClientId:
      type: apiKey
      in: header
      name: X-Client-Id
      description: >-
        Credential client id (`kairos_ck_...`). Must be sent together with
        X-Api-Key and X-Api-Secret.
    apiKeyKey:
      type: apiKey
      in: header
      name: X-Api-Key
      description: 64-char hex API key.
    apiKeySecret:
      type: apiKey
      in: header
      name: X-Api-Secret
      description: 64-char hex API secret.
    bearerAuth:
      type: http
      scheme: bearer
      bearerFormat: JWT
      description: >-
        First-party Kairos session JWT (web app sessions). Not issued to API
        consumers.

````

This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.