Get a product's custom fields
Returns the merchant’s own custom fields for a single product, with their values.
A merchant can define fields that Galactic Core does not have — a care instruction, a country of origin, a fabric composition — and fill them per product. Each definition carries a type, so a number arrives as a number and a multi-select as an array rather than as text.
Only fields the merchant published are returned. A custom field can hold a cost, a margin note or an internal reference, so a field is private unless the merchant marks it public; private fields are absent from this response rather than empty. A product with no published fields returns an empty array, which is not an error.
Because the merchant controls both the field names and how many exist, treat the array as data to
render rather than a fixed shape: read field_label for a heading and field_type to decide how to
display value.
Read access — works with a publishable or secret key.
Authorizations
API Key Authentication
Use your API key in the Authorization header:
Key Types:
Secret Keys (Server-Side Only):
- Format:
tybrite_sk_live_*(production) ortybrite_sk_test_*(sandbox) - Full read/write access to all endpoints
- ⚠️ NEVER expose in client-side code or public repositories
- Required for: write operations, authentication, payment verification, AI recommendations
Publishable Keys (Client-Safe):
- Format:
tybrite_pk_live_*(production) ortybrite_pk_test_*(sandbox) - Read-only access (GET requests only, plus POST semantic search)
- ✅ Safe for client-side JavaScript, mobile apps, and public code
- Allowed for: browsing products, search, CMS content, pricing queries
Endpoint-Specific Requirements:
- Authentication endpoints (
/v1/auth/*): Secret key required - Payment verification (
POST /v1/payments/verify): Secret key required - AI Recommendations (
POST /v1/recommendations): Secret key required - Semantic Search (
POST /v1/search): Both key types allowed (read-only operation) - All write operations: Secret key required
- All read operations: Both key types allowed
Using a publishable key for restricted operations returns 403 Forbidden.
Path Parameters
The product UUID whose custom fields to fetch.
Response
Successfully retrieved the product's published custom fields

