# SMSRay > SMSRay is an SMS API by Lacspace (https://lacspace.com). Customers integrate the REST API or dashboard to send one-time passwords (OTP), transactional alerts and two-way messages, and SMSRay handles delivery over local mobile networks (Nepal mobile numbers today), with delivery reports, signed webhooks, analytics and a web dashboard. Monthly plans in NPR. SMSRay is a product of Lacspace (https://lacspace.com). © 2026 Lacspace Corporation Pvt Ltd. Operator: Lacspace Corporation Pvt. Ltd.. Dashboard: https://app.smsray.com. API base URL: https://api.smsray.com/api/sms/v1. Authentication: the x-api-key header. There is no official SDK yet; the API is plain REST/JSON (docs show cURL, Node.js, Python and PHP). ## What is available today - POST /sms/send — send a transactional, OTP or promotional (Enterprise only) message from an approved template. Returns messageId, status "queued", segments and encoding. - POST /sms/otp/send and POST /sms/otp/verify — 6-digit codes, valid 5 minutes, 60 s resend cooldown, max 5 attempts, max 3 per 10 minutes per number, optional per-IP limit. Only a SHA-256 hash of the code is stored. A wrong code returns 200 with verified: false and a reason. - GET /sms/messages/:id and GET /sms/balance. - Idempotency-Key header on every POST, records kept 24 h. - Webhooks message.status and message.inbound, signed with x-lacspace-signature (HMAC-SHA256, t=…,v1=…, ±300 s tolerance, dual v1 during secret rotation), 8 attempts with backoff (10 s, 30 s, 2 min, 10 min, 30 min, 1 h, 3 h, 6 h). - Per-client send rate limit (default 20 per second). Errors use { "error", "code", "details"? }. - Encoding: GSM-7 160/153 characters per segment, Unicode (UCS-2) 70/67; Nepali is Unicode; max 6 segments. - Delivery: managed, network-agnostic delivery across all mobile networks with automatic retries; delivery reports by API, webhook and dashboard. Recipients: Nepal mobile numbers (96/97/98XXXXXXXX). - Templates: every custom message uses a template approved by SMSRay before it can be sent (review usually aimed within one business day). OTPs sent through the OTP API use the built-in template, so OTP works on day one. - API keys with scopes, IP allowlists, daily caps and test mode. Opt-out list / blocklist. Dashboard analytics, insights and alert rules (delivery rate drops, failures spike or balance low → email, webhook or SMS alert). Devanagari / Unicode text. - Free tools: SMS length & cost calculator and OTP preview at https://smsray.com/tools. - Accounts: created by the SMSRay team (no self sign-up); contact sales. Dashboard: sign-in by phone or email OTP at app.smsray.com/login, workspaces with members, API clients and webhook URLs, message log, analytics, inbound inbox, security sessions and an audit log. - Licensing: the SMSRay platform, API and portal are proprietary Lacspace software licensed under the Terms of Service; code samples in the docs are under the Lacspace Free Licence v1.0 (https://smsray.com/legal/licence). - Technology: https://smsray.com/built-on. ## Pricing Prices in NPR, per monthly period (https://smsray.com/pricing): - Starter: NPR 3,000 / month, 4,500 SMS (about NPR 0.67 per SMS). OTP and transactional SMS. - Business (most popular): NPR 5,000 / month, 10,000 SMS (NPR 0.50 per SMS). OTP and transactional SMS. - Enterprise: contact us. Custom volume, promotional SMS with approved templates, dedicated support, custom sender name where available, volume pricing. All plans: REST API, dashboard, delivery reports and webhooks, OTP send/verify API, analytics. Unused SMS expire at the end of each monthly period. Top-ups at the plan's rate (Starter NPR 0.67, Business NPR 0.50 per SMS) are added to the current month and expire with it. 1 SMS = up to 160 GSM-7 characters or 70 Nepali/Unicode characters; longer messages use more SMS (153/67 per part). Failed messages are credited back automatically; undelivered messages are not. Sales: sales@lacspace.com. ## Not available yet (coming soon) - SMSRay Voice: missed-call verification, call alerts, voice OTP; later IVR menus, recorded announcements, AI voice agents and automation flows. - Workflow automation: scheduled sends, keyword auto-replies and webhook-triggered SMS. - Bulk campaign tools, contacts and lists, quiet hours, international numbers, official SDKs. Contact — sales: sales@lacspace.com · support: support@lacspace.com · security: security@lacspace.com ## Key pages - [Home](https://smsray.com/) - [Features](https://smsray.com/features) - [How it works](https://smsray.com/how-it-works) - [OTP verification](https://smsray.com/otp) - [Security](https://smsray.com/security) - [Use cases](https://smsray.com/use-cases) - [Pricing](https://smsray.com/pricing) - [Free SMS tools](https://smsray.com/tools) - [Voice \(coming soon\)](https://smsray.com/voice) - [Developer hub](https://smsray.com/developers) - [Built on \(technology\)](https://smsray.com/built-on) - [About](https://smsray.com/about) - [FAQ](https://smsray.com/faq) - [Contact](https://smsray.com/contact) ## Company - [SMSRay is a product of Lacspace \(Lacspace Corporation Pvt Ltd.\)](https://lacspace.com) ## Docs - [API reference](https://smsray.com/docs) - [Quickstart](https://smsray.com/docs/quickstart) - [Authentication](https://smsray.com/docs/authentication) - [Send SMS](https://smsray.com/docs/send-sms) - [OTP](https://smsray.com/docs/otp) - [Messages](https://smsray.com/docs/messages) - [Balance](https://smsray.com/docs/balance) - [Webhooks](https://smsray.com/docs/webhooks) - [Errors](https://smsray.com/docs/errors) - [Rate limits](https://smsray.com/docs/rate-limits) - [Idempotency](https://smsray.com/docs/idempotency) - [Encoding and segments](https://smsray.com/docs/encoding) - [API reference \(PDF\)](https://smsray.com/docs/pdf) ## Legal - [Legal centre](https://smsray.com/legal) - [Third-party notices](https://smsray.com/legal/third-party-notices) - [Terms of Service](https://smsray.com/legal/terms) - [Privacy Policy](https://smsray.com/legal/privacy) - [Acceptable Use Policy](https://smsray.com/legal/acceptable-use) - [Anti-Spam Policy](https://smsray.com/legal/anti-spam) - [Cookie Policy](https://smsray.com/legal/cookies) - [Data Processing Addendum](https://smsray.com/legal/data-processing) - [Software Licence](https://smsray.com/legal/licence) - [Terms of Service \(PDF, v1.1\)](https://smsray.com/legal/terms/pdf) - [Privacy Policy \(PDF, v1.1\)](https://smsray.com/legal/privacy/pdf) - [Acceptable Use Policy \(PDF, v1.1\)](https://smsray.com/legal/acceptable-use/pdf) - [Anti-Spam Policy \(PDF, v1.1\)](https://smsray.com/legal/anti-spam/pdf) - [Cookie Policy \(PDF, v1.1\)](https://smsray.com/legal/cookies/pdf) - [Data Processing Addendum \(PDF, v1.1\)](https://smsray.com/legal/data-processing/pdf) - [Software Licence \(PDF, v1.0-draft\)](https://smsray.com/legal/licence/pdf)