curl -X PATCH "https://api.fitsociety.io/public/v1/workout/clients/{clientId}/plans/workout-feedback/{sessionId}" \
-H "Authorization: Bearer <access_token>" \
-H "Idempotency-Key: <stable_request_key>" \
-H "Content-Type: application/json" \
-d '{}'const options = {
method: 'PATCH',
headers: {
'Idempotency-Key': '<idempotency-key>',
Authorization: 'Bearer <token>',
'Content-Type': 'application/json'
},
body: JSON.stringify({
clientId: '67f1234567890abcdef1234',
rating: 9,
difficulty: 'Hard',
emojiRating: 'Intense',
notes: 'Updated my thoughts.'
})
};
fetch('https://api.fitsociety.io/public/v1/workout/clients/{clientId}/plans/workout-feedback/{sessionId}', options)
.then(res => res.json())
.then(res => console.log(res))
.catch(err => console.error(err));import requests
url = "https://api.fitsociety.io/public/v1/workout/clients/{clientId}/plans/workout-feedback/{sessionId}"
payload = {
"clientId": "67f1234567890abcdef1234",
"rating": 9,
"difficulty": "Hard",
"emojiRating": "Intense",
"notes": "Updated my thoughts."
}
headers = {
"Idempotency-Key": "<idempotency-key>",
"Authorization": "Bearer <token>",
"Content-Type": "application/json"
}
response = requests.patch(url, json=payload, headers=headers)
print(response.text){
"data": {
"sessionId": "67f1234567890abcdef1234",
"feedback": {
"rating": 8,
"difficulty": "Moderate",
"emojiRating": "Strong",
"emoji": "💪",
"notes": "Felt strong today."
}
},
"meta": {
"requestId": "4f849d7d-f4f1-45cc-b4b7-3984a3d17f83",
"rateLimit": {
"limit": 10,
"remaining": 9,
"resetSeconds": 1
},
"idempotency": {
"replayed": false
}
}
}Edit session workout feedback
Edit previously submitted feedback for a session. Only the provided fields are changed; omitted fields are left unchanged. Sending an explicit null or empty string for a field clears it (e.g. emojiRating: null removes the mood). At least one field is required.
Requires the workout_client_plans:write scope. This operation maps to /app/v1/workout/plans/client/workout-feedback/:sessionId and retains its Workout V2 permission, feature-flag, and resource-scope checks.
The clientId path parameter identifies the client represented by the request context.
curl -X PATCH "https://api.fitsociety.io/public/v1/workout/clients/{clientId}/plans/workout-feedback/{sessionId}" \
-H "Authorization: Bearer <access_token>" \
-H "Idempotency-Key: <stable_request_key>" \
-H "Content-Type: application/json" \
-d '{}'const options = {
method: 'PATCH',
headers: {
'Idempotency-Key': '<idempotency-key>',
Authorization: 'Bearer <token>',
'Content-Type': 'application/json'
},
body: JSON.stringify({
clientId: '67f1234567890abcdef1234',
rating: 9,
difficulty: 'Hard',
emojiRating: 'Intense',
notes: 'Updated my thoughts.'
})
};
fetch('https://api.fitsociety.io/public/v1/workout/clients/{clientId}/plans/workout-feedback/{sessionId}', options)
.then(res => res.json())
.then(res => console.log(res))
.catch(err => console.error(err));import requests
url = "https://api.fitsociety.io/public/v1/workout/clients/{clientId}/plans/workout-feedback/{sessionId}"
payload = {
"clientId": "67f1234567890abcdef1234",
"rating": 9,
"difficulty": "Hard",
"emojiRating": "Intense",
"notes": "Updated my thoughts."
}
headers = {
"Idempotency-Key": "<idempotency-key>",
"Authorization": "Bearer <token>",
"Content-Type": "application/json"
}
response = requests.patch(url, json=payload, headers=headers)
print(response.text){
"data": {
"sessionId": "67f1234567890abcdef1234",
"feedback": {
"rating": 8,
"difficulty": "Moderate",
"emojiRating": "Strong",
"emoji": "💪",
"notes": "Felt strong today."
}
},
"meta": {
"requestId": "4f849d7d-f4f1-45cc-b4b7-3984a3d17f83",
"rateLimit": {
"limit": 10,
"remaining": 9,
"resetSeconds": 1
},
"idempotency": {
"replayed": false
}
}
}Authorizations
Public API access token issued by /public/v1/oauth/token. Example: Authorization: Bearer fspt_.... Each resource request rechecks the token company's current provider access. Disabling access blocks existing tokens with 403 auth.provider_unavailable.
Headers
Required for Public API write requests. Reusing the same key with the same method, path, and body replays the stored successful response; reusing it with a different request returns 409 idempotency.conflict.
1 - 200"booking-create-20260714-001"
Path Parameters
Session whose feedback is being edited.
"67f1234567890abcdef1234"
Client in the company bound to the Public API token.
^[a-fA-F0-9]{24}$Body
Required when the caller is a coach.
"67f1234567890abcdef1234"
Send null/"" to clear.
1 <= x <= 109
Send null/"" to clear.
Easy, Moderate, Hard "Hard"
Send null/"" to clear.
Strong, Energized, Challenging, Intense, Satisfied, Exhausted "Intense"
"" or null clears the text.
"Updated my thoughts."