# Getting started

## Six steps to go-live

1. **Get sandbox credentials.** Email [integration@gamealligator.com](mailto:integration@gamealligator.com). You receive an operator profile with `operator_id`, the Operator API key pair, and a login to `https://operator.rexplay.site`. There you rotate the wallet signing key once and copy the secret. The portal shows it only at that moment.
2. **Give GA your sandbox wallet URL** and the optional wallet actions you support. The URL uses HTTPS and is reachable from the internet. Also give your currencies with their exponent, a 24/7 technical contact, and a finance contact.
3. **Build the five mandatory wallet actions** (chapter 5) with the four money rules (chapter 3). Test your signature check with the worked example in §2.2 first.
4. **Run the Postman collection `GA_Operator_API_v2` against your wallet.** Set `wallet_base_url`, `ga_wallet_key_id`, `ga_wallet_hmac_secret`. Done when all ten requests answer a valid envelope.
5. **Run the certification checks from the Operator Portal** (chapter 9) until every check passes, then sign the checklist with your GA integration manager.
6. **Repeat steps 2, 4, and 5 with production credentials** and your production wallet URL. Production credentials are separate. GA never derives them from sandbox ones.

Addresses:

| Surface | Sandbox | Production |
|---|---|---|
| GA API (chapter 4) | `https://api.rexplay.site` | `https://api.game-alligator.com` |
| Operator Portal (wallet key, reports) | `https://operator.rexplay.site` | `https://operator.game-alligator.com` |
| Your wallet | you host it, you give GA the URL | separate URL and credentials |
| GA calls your wallet from | `49.13.169.177`, `46.224.156.1` | `49.13.169.177` |
