Research Note
API Change and Platform Dependency Research Note
An upstream API change can alter access, fields, authentication, rate limits, permitted uses, attribution, display, storage, downstream sharing, webhook behavior, and ter
In this article
API Change and Platform Dependency Research Note
Finding
An upstream API change can alter access, fields, authentication, rate limits, permitted uses, attribution, display, storage, downstream sharing, webhook behavior, and termination rights. The dependent product must treat the change as a product, engineering, data, contract, privacy, support, and communication event.
Strava's current API agreement permits modification or discontinuation and imposes use restrictions. Garmin's June 30, 2025 guidelines apply attribution to primary displays, secondary screens, exports, APIs, social sharing, and materially influenced derived data. These are current records, not universal norms.
GitHub and Stripe demonstrate provider practices that reduce uncertainty through versioning, notices, migration guidance, testing, and limited rollback or support periods. A dependent team should not assume its provider offers the same protections.
Dependency model
Record the upstream provider, input, user journey, permitted use, technical path, data stored, downstream recipients, commercial contribution, failure signal, substitute, exit time, and owner.
Concentration is not the only risk. A dependency can be dangerous because access is revocable, the product cannot reproduce the input, migration takes too long, the user relationship belongs upstream, or contractual terms prevent the intended value.
Publication rule
Do not interpret a reader's contract or promise API continuity. Present adapt, negotiate, replace, narrow, and exit as product options that require technical, commercial, privacy, and legal review.
Sources
Follow the evidence.
- patents.google.com: US9116922patents.google.com
- communityhub.strava.com: update regarding garmin attribution best practice 11916communityhub.strava.com
- developer.garmin.com: Garmin Developer API Brand Guidelinesdeveloper.garmin.com
- storage.courtlistener.com: gov.uscourts.cod.247832.19.0storage.courtlistener.com
- docs.stripe.com: upgradesdocs.stripe.com
- docs.github.com: breaking changesdocs.github.com
- reddit.com: setting the record straight about garminreddit.com
- dockets.justia.com: 247832dockets.justia.com
- prsa.org: ethicsprsa.org
- w3.org: prov ow3.org
- developers.strava.com: guidelinesdevelopers.strava.com
- patents.google.com: US9778053patents.google.com
- ico.org.uk: right to data portabilityico.org.uk
- garminrumors.com: Strava vs Garmin Lawsuit Segments 9 30garminrumors.com
- developers.strava.com: getting starteddevelopers.strava.com
- developers.strava.com: webhooksdevelopers.strava.com
- strava.com: apistrava.com
- developer.garmin.com: brand guidelinesdeveloper.garmin.com
- patents.google.com: US9297651patents.google.com