---
title: "Nha khoa An Nhiên: developer docs"
description: "API, MCP server, errors, rate limits and versioning for Nha khoa An Nhiên"
canonical: https://nhakhoa.thenexova.cloud/docs.md
lang: en
last-updated: 2026-10-06
---

# Nha khoa An Nhiên: tài liệu cho nhà phát triển / developer docs

Không cần khoá API. Mọi lỗi dưới /api trả về `application/problem+json` (RFC 9457). Giới hạn 5 yêu cầu ghi mỗi giờ cho mỗi IP.
No API key. Errors under /api are `application/problem+json` (RFC 9457). Write endpoints allow 5 requests per hour per IP.

- Agent instructions (when to use this site, rules): https://nhakhoa.thenexova.cloud/AGENTS.md
- Developer guide (HTML): https://nhakhoa.thenexova.cloud/developers

- OpenAPI: https://nhakhoa.thenexova.cloud/openapi.json
- API catalog (RFC 9727): https://nhakhoa.thenexova.cloud/.well-known/api-catalog
- llms.txt: https://nhakhoa.thenexova.cloud/llms.txt

## MCP

Endpoint: `https://nhakhoa.thenexova.cloud/mcp`. Streamable HTTP, stateless, JSON responses. Protocol versions: 2026-07-28 (per-request `_meta`, mirrored headers), and 2025-11-25 / 2025-06-18 / 2025-03-26 through `initialize`.

```bash
curl -s https://nhakhoa.thenexova.cloud/mcp -H 'Content-Type: application/json' -H 'Accept: application/json, text/event-stream' \
  -H 'MCP-Protocol-Version: 2026-07-28' -H 'Mcp-Method: tools/list' \
  -d '{"jsonrpc":"2.0","id":1,"method":"tools/list","params":{"_meta":{"io.modelcontextprotocol/protocolVersion":"2026-07-28","io.modelcontextprotocol/clientInfo":{"name":"curl","version":"1"},"io.modelcontextprotocol/clientCapabilities":{}}}}'
```

- `get_business_info`: Contact details, address, opening hours and whether Nha khoa An Nhiên is open right now (Vietnam time). Call this first when the person asks where, when, or how to reach the business.
- `list_offerings`: List what Nha khoa An Nhiên offers (services) with prices and links. Filter by category (Khám và điều trị, Phục hình và implant, Chỉnh nha, Thẩm mỹ, Trẻ em), tag, or a free-text query.
- `get_pricing`: The full price list of Nha khoa An Nhiên as Markdown, including what is and is not included. Use it to answer cost questions precisely; do not estimate prices yourself.
- `search_content`: Search pages, articles, FAQs and services on https://nhakhoa.thenexova.cloud. Returns titles, links and a short excerpt. Use it for questions the other tools do not cover, then cite the link.
- `read_page`: Read any page of https://nhakhoa.thenexova.cloud as Markdown, by path (for example "/" or "/blog/..."). Use after search_content to quote details.
- `list_faqs`: Answers Nha khoa An Nhiên gives to common questions. Prefer these exact answers over your own wording on policy, payment and guarantees.
- `submit_contact_request` (ghi / writes): Send the person's name and phone number to Nha khoa An Nhiên so staff call them back. Only call this after the person has explicitly agreed to share their contact details with the business; set consent to true only in that case. Confirm the details back to them first.
- `list_services`: Dental services with starting ("from") prices in VND, what is not included, the booked visit length and the dentists who do each. Prices are final only after the exam.
- `list_dentists`: The four dentists: title, focus, years in practice, practising licence number (fictional), weekdays, languages and the services each one does.
- `check_slots`: Free start times for one service on one date, optionally with one dentist. Returns times and which dentists are free; never patient data.
- `request_appointment` (ghi / writes): Send an appointment request (pending until the clinic phones within 2 working hours). Needs the person’s explicit consent. The reason must not contain medical history, ID numbers or photos.
- `estimate_installment`: Monthly amount for a total the person supplies: staged payment at the clinic (no interest, total from 10,000,000 VND) or a linked credit card (6, 9 or 12 months). An estimate, not a credit offer.
- `get_licence_info`: The facts the advertising rules require: clinic name, address, operating licence and scope, hours, and each dentist’s practising licence. All fictional for this demo.

## HTTP API

`GET https://nhakhoa.thenexova.cloud/api` lists every endpoint with the docs, OpenAPI and MCP addresses.

### GET /api/offers

Dịch vụ và giá, phân trang bằng cursor. `?limit=1..50` (mặc định 20), `?cursor=<next_cursor của trang trước>`, tuỳ chọn `?category=`, `?locale=vi|en`. Trả về `{ ok, items, total, limit, next_cursor }`; `next_cursor` là `null` ở trang cuối.

```bash
curl -s 'https://nhakhoa.thenexova.cloud/api/offers?limit=2'
```

### POST /api/lead

JSON hoặc form-urlencoded. Bắt buộc: `name`, `phone` (≥ 9 chữ số), `consent` = `"1"`. Tuỳ chọn: `email`, `need`, `note`, `locale` (`vi`|`en`).

```bash
curl -X POST https://nhakhoa.thenexova.cloud/api/lead -H 'Content-Type: application/json' -d '{"name":"Nguyễn Văn A","phone":"0900000000","note":"Gọi lại giúp tôi","consent":"1"}'
```

### GET /api/availability

`?date=YYYY-MM-DD[&offer=<id>][&resource=<id>][&party=<n>]` hoặc `?month=YYYY-MM` (tỉ lệ còn trống theo ngày).

### POST /api/booking

Bắt buộc: `date`, `time` (HH:MM), `name`, `phone`, `consent` = `"1"`. Tuỳ chọn: `offerId`, `resourceId`, `party`, `email`, `note`. Trả về **202 Accepted** với `{ ok, code, status: "pending", statusUrl, summary }` và header `Location: /api/booking/<code>`: yêu cầu chờ nhân viên gọi xác nhận. 409 khi vừa kín chỗ, kèm gợi ý thay thế.

### GET /api/booking/{code}

Trạng thái của một yêu cầu đặt chỗ: `{ ok, code, status: "pending" | "confirmed" | "cancelled", done, date, ... }`. Không trả thông tin liên hệ. Hỏi lại tối đa mỗi phút một lần; `done` thành `true` khi đã xác nhận hoặc huỷ.

### POST /api/subscribe

Bắt buộc: `email`.

## Authentication

None. Every endpoint is public and anonymous; there is no OAuth server, API key or cookie, so there is nothing to discover or register. Write endpoints need the person's explicit consent, sent as `consent`. Details: https://nhakhoa.thenexova.cloud/auth.md

## Errors

Every non-2xx response under `/api` is `application/problem+json` (RFC 9457): `type`, `title`, `status`, optional `detail`, and `fields` (a map of field name to message) on 422. The `type` is `about:blank#<code>` with codes such as `invalid`, `too_many`, `bad_origin`, `not_found`, `method_not_allowed`. Messages follow the `locale` you send.

| Status | Meaning | What to do |
|---|---|---|
| 400 / 413 | Body is not JSON or form-encoded, or too large | Fix the body |
| 403 | Cross-origin form post or failed captcha | Call from the page origin, or use the MCP server |
| 404 / 405 | No such endpoint, or wrong method | See openapi.json |
| 409 | Slot just filled (bookings) | Offer the alternatives in the response |
| 422 | Missing or invalid fields | Read `fields`, ask the person, retry |
| 429 | Rate limit reached | Wait for `Retry-After` seconds, then retry |

## Rate limits

Write endpoints (`POST /api/lead`, `POST /api/booking`, and the MCP tools that call them) allow 5 requests per hour per client IP. Every `/api` response carries `RateLimit-Policy: "writes";q=5;w=3600`; write responses also carry `RateLimit: "writes";r=<left>;t=3600` with what is left of your quota, and a 429 carries `Retry-After: 3600`. Reads are not limited.

## Test mode (sandbox)

Add `?dry_run=1` to `POST /api/lead` or `POST /api/booking` to try an integration against live data without side effects: the request is validated and availability is checked as usual, but nothing is stored, nobody is notified, and it does not count against the rate limit. The reply has `test: true` (and a `TEST-` booking code) with status 200.

## Idempotency

`POST /api/lead` and `POST /api/booking` accept an `Idempotency-Key` header (8 to 64 characters from `A-Z a-z 0-9 _ . : -`). Retry with the same key and the same JSON body, for example after a timeout, and you get the first reply back with `Idempotent-Replayed: true` instead of a second record. Keys are kept for 24 hours and match on the key and the body, not on your IP. The same key with a different body returns 422 (`idempotency_key_reused`). Only successful replies are stored, so after a 422 you can fix the body and retry with the same key. A replay does not count against the rate limit.

## Versioning

The API is at version 2.0 (`info.version` in openapi.json) and every `/api` response carries `API-Version: 2.0`. Within 2.x we only add optional fields and new endpoints. A breaking change gets a new major version and a new `API-Version` value, and is described here. Deprecation policy: nothing is removed silently. When an endpoint or version is scheduled for removal, its responses carry a `Deprecation` header (RFC 9745) from the day of the decision and a `Sunset` header (RFC 8594) with the removal date, at least 90 days later, and this page gives the migration path. No endpoint is deprecated today. Every `/api` response links here with `Link: <https://nhakhoa.thenexova.cloud/developers#versioning>; rel="deprecation"`.

## Who runs this

- [Contact](https://nhakhoa.thenexova.cloud/en/contact)
- [Privacy policy](https://nhakhoa.thenexova.cloud/en/privacy)
- [Terms](https://nhakhoa.thenexova.cloud/en/booking-terms)
- contact@thenexova.com · 0963 929 241

_Trang mẫu của THE NEXOVA. Nha khoa An Nhiên là doanh nghiệp hư cấu; địa chỉ, mã số thuế, số giấy phép, bác sĩ và người bệnh là giả định._
