# API changes: October 2026

[← Changelog](/docs/changelog). Days are listed newest first, open an entry by its link.

## October 1, 2026

- [NEW-1001-1: Manage CRM to-dos and activity deadlines](/docs/changelog/2026-10-01#new-1001-1-manage-crm-to-dos-and-activity-deadlines)
- [NEW-1001-2: read CRM forms](/docs/changelog/2026-10-01#new-1001-2-read-crm-forms)
- [NEW-1001-3: Cross-entity CRM and requisite lookup](/docs/changelog/2026-10-01#new-1001-3-cross-entity-crm-and-requisite-lookup)
- [BC-1001-4: machine file links require a Vibecode API key](/docs/changelog/2026-10-01#bc-1001-4-machine-file-links-require-a-vibecode-api-key)
- [NEW-1001-5: download CRM files and documents through the Vibecode API](/docs/changelog/2026-10-01#new-1001-5-download-crm-files-and-documents-through-the-vibecode-api)
- [NEW-1001-6: CRM payments with product positions and delivery reads](/docs/changelog/2026-10-01#new-1001-6-crm-payments-with-product-positions-and-delivery-reads)
- [NEW-1001-7: create and manage CRM documents through the Vibecode API](/docs/changelog/2026-10-01#new-1001-7-create-and-manage-crm-documents-through-the-vibecode-api)
- [NEW-1001-8: file size refusal on upload carries a hint](/docs/changelog/2026-10-01#new-1001-8-file-size-refusal-on-upload-carries-a-hint)
- [FIX-1001-9: Cowork key no longer refused to a box service account](/docs/changelog/2026-10-01#fix-1001-9-cowork-key-no-longer-refused-to-a-box-service-account)
- [NEW-1001-10: CRM document templates are available through the Vibecode API](/docs/changelog/2026-10-01#new-1001-10-crm-document-templates-are-available-through-the-vibecode-api)
- [NEW-1001-11: cause, action and a text for a person in refusals for a key's scope](/docs/changelog/2026-10-01#new-1001-11-cause-action-and-a-text-for-a-person-in-refusals-for-a-key-s-scope)
- [FIX-1001-12: a Bitrix24 scope refusal no longer calls a cabinet key a platform key](/docs/changelog/2026-10-01#fix-1001-12-a-bitrix24-scope-refusal-no-longer-calls-a-cabinet-key-a-platform-key)
- [BC-1001-13: Human approval for wider application access](/docs/changelog/2026-10-01#bc-1001-13-human-approval-for-wider-application-access)
- [BC-1001-14: a multifield row with an id is refused on every write door](/docs/changelog/2026-10-01#bc-1001-14-a-multifield-row-with-an-id-is-refused-on-every-write-door)
- [NEW-1001-15: CRM dictionaries, mode and currency localizations](/docs/changelog/2026-10-01#new-1001-15-crm-dictionaries-mode-and-currency-localizations)
- [NEW-1001-18: recentCallsDataSince field in GET /v1/ai/usage](/docs/changelog/2026-10-01#new-1001-18-recentcallsdatasince-field-in-get-v1-ai-usage)
- [BC-1001-19: changing the mode of Cowork/Code seat keys through V1 and re-issuing a key wider than the caller are refused with 403](/docs/changelog/2026-10-01#bc-1001-19-changing-the-mode-of-cowork-code-seat-keys-through-v1-and-re-issuing-a-key-wider-than-the-caller-are-refused-with-403)
- [BC-1001-20: keys issued by a Cowork/Code seat are no wider than the seat mode](/docs/changelog/2026-10-01#bc-1001-20-keys-issued-by-a-cowork-code-seat-are-no-wider-than-the-seat-mode)
- [NEW-1001-21: POST /v1/cowork/deploy-key names the mode of the minted key](/docs/changelog/2026-10-01#new-1001-21-post-v1-cowork-deploy-key-names-the-mode-of-the-minted-key)
- [FIX-1001-22: an application and an empty-slot key are issued in the caller's mode instead of 403](/docs/changelog/2026-10-01#fix-1001-22-an-application-and-an-empty-slot-key-are-issued-in-the-caller-s-mode-instead-of-403)
- [FIX-1001-23: a third-party agent key is no longer told to obtain a deploy key](/docs/changelog/2026-10-01#fix-1001-23-a-third-party-agent-key-is-no-longer-told-to-obtain-a-deploy-key)
- [FIX-1001-24: rotatable and rotateBlockedReason account for the calling key mode](/docs/changelog/2026-10-01#fix-1001-24-rotatable-and-rotateblockedreason-account-for-the-calling-key-mode)
- [FIX-1001-25: updating a to-do no longer overwrites concurrent edits](/docs/changelog/2026-10-01#fix-1001-25-updating-a-to-do-no-longer-overwrites-concurrent-edits)
- [BC-1001-26: Cowork seat quote removed: the discount follows the terms at the moment of payment](/docs/changelog/2026-10-01#bc-1001-26-cowork-seat-quote-removed-the-discount-follows-the-terms-at-the-moment-of-payment)
- [BC-1001-27: string parameters no longer accept arrays and objects](/docs/changelog/2026-10-01#bc-1001-27-string-parameters-no-longer-accept-arrays-and-objects)
- [BC-1001-28: Disk file download links require a Vibecode API key](/docs/changelog/2026-10-01#bc-1001-28-disk-file-download-links-require-a-vibecode-api-key)
- [NEW-1001-29: the application external API works with a server in the schedule run mode](/docs/changelog/2026-10-01#new-1001-29-the-application-external-api-works-with-a-server-in-the-schedule-run-mode)
- [BC-1001-30: Explicit refusal for duplicate and missing CRM bindings](/docs/changelog/2026-10-01#bc-1001-30-explicit-refusal-for-duplicate-and-missing-crm-bindings)
- [NEW-1001-31: Contact company bindings, lead contact bindings and clear-all](/docs/changelog/2026-10-01#new-1001-31-contact-company-bindings-lead-contact-bindings-and-clear-all)
- [NEW-1001-32: status change reason in the server activity feed](/docs/changelog/2026-10-01#new-1001-32-status-change-reason-in-the-server-activity-feed)
- [NEW-1001-33: The pull_channel scope is available on enabled accounts](/docs/changelog/2026-10-01#new-1001-33-the-pull_channel-scope-is-available-on-enabled-accounts)
- [NEW-1001-34: Contact and company call lists](/docs/changelog/2026-10-01#new-1001-34-contact-and-company-call-lists)
