> ## Documentation Index
> Fetch the complete documentation index at: https://docs.olympex.io/llms.txt
> Use this file to discover all available pages before exploring further.

# List a strategy's orders

> List the orders Olympex has created for one DCA strategy, oldest first.

`GET /dca-order/strategies/{id}/orders` returns the orders Olympex has created so far for one of your strategies, oldest first. Olympex creates a strategy's orders as the strategy runs, and there is no endpoint to create one. A new strategy has none until its first order is scheduled. To read one order, use [`GET /dca-order/orders/{id}`](/api-reference/dca/get-dca-order).

Signed endpoint with no request body. Send `Content-Type: application/json` and the four headers `x-api-key-id`, `x-value-info`, `x-passphrase` and `x-signature` described in [Sign requests](/authentication/sign-requests), signed over the method, the path and the empty string (`bodyHash` `47DEQpj8HBSa-_TImW-5JCeuQeRkm5NMpJWZG3hSuFU`). `id` is the strategy ID. `data` is an array of DCA orders, oldest first, unpaginated, with no filters. Order `status` values: `pending`, `executing`, `successful`, `cancelled`, `error`, `expired`. `404 NOT_FOUND` "DCA strategy not found" means the strategy ID doesn't exist or belongs to another API key.

## What the list contains

* **Orders that exist so far.** Olympex creates each order as the strategy runs, so while the strategy is `active`, the list can be shorter than `iterations`.
* **One status per order.** [Order status](/api-reference/dca/get-dca-order#order-status) explains each value and the fields it sets.
* **Amounts in human-readable units, as JSON numbers.** `amount` is the amount of the token sold in the order. Once the order executes, `amountReceived` is the amount of the token bought.
* **Everything at once.** The list is unpaginated and takes no filters.

## After you cancel the strategy

Cancelling a strategy stops new orders. The orders already in this list are read-only: no endpoint changes or cancels a DCA order. To make sure none of them executes, lower the maker's allowance to the order contract: see [Stop everything](/concepts/order-authorization#stop-everything-set-the-allowance-to-0).

<RequestExample>
  ```bash cURL theme={null}
  # List the orders of one DCA strategy, oldest first.
  # Needs openssl, curl and OLYMPEX_API_KEY_ID, OLYMPEX_SECRET_KEY, OLYMPEX_PASSPHRASE.
  STRATEGY_ID='320263ca-2f38-4349-b641-a23aed2ff847'
  METHOD=GET
  ENDPOINT="/dca-order/strategies/$STRATEGY_ID/orders"
  QUERY=''
  BODY='' # GET has no body: the signature covers the empty string
  TS="${OLYMPEX_TIMESTAMP:-$(date +%s)}"
  NONCE="${OLYMPEX_NONCE:-$(openssl rand -hex 12)}"
  BODY_HASH="$(printf '%s' "$BODY" | openssl dgst -sha256 -binary | openssl base64 -A | tr '+/' '-_' | tr -d '=')"
  VALUE_INFO="$(printf '%s\n%s\n%s' "$TS" "$NONCE" "$BODY_HASH")"
  MESSAGE="$(printf 'OLPX-HMAC-SHA256-V2\n%s\n%s\n%s\n%s\n%s\n%s' "$TS" "$NONCE" "$METHOD" "/api/v1$ENDPOINT" "$QUERY" "$BODY_HASH")"
  curl -sS -X "$METHOD" "https://api-rest.olympex.io/api/v1$ENDPOINT${QUERY:+?$QUERY}" \
    -H "content-type: application/json" \
    -H "x-api-key-id: $OLYMPEX_API_KEY_ID" \
    -H "x-value-info: $(printf '%s' "$VALUE_INFO" | openssl base64 -A)" \
    -H "x-passphrase: $OLYMPEX_PASSPHRASE" \
    -H "x-signature: $(printf '%s' "$MESSAGE" | openssl dgst -sha256 -hmac "$OLYMPEX_SECRET_KEY" -binary | od -An -v -tx1 | tr -d ' \n')"
  ```

  ```ts TypeScript theme={null}
  import { olympexRequest } from "./sign-request.ts"; // /authentication/sign-requests

  type DcaOrder = {
    id: string;
    amount: number;
    amountReceived?: number;
    status: string;
    transactionHash?: string;
    createdAt: string;
  };

  const strategyId = "320263ca-2f38-4349-b641-a23aed2ff847";
  const orders = await olympexRequest<DcaOrder[]>("GET", `/dca-order/strategies/${strategyId}/orders`);
  for (const order of orders) {
    console.log(order.createdAt, order.status, order.amount, order.amountReceived ?? "", order.transactionHash ?? "");
  }
  ```

  ```python Python theme={null}
  from sign_request import olympex_request  # /authentication/sign-requests

  strategy_id = "320263ca-2f38-4349-b641-a23aed2ff847"
  orders = olympex_request("GET", f"/dca-order/strategies/{strategy_id}/orders")
  for order in orders:
      print(order["createdAt"], order["status"], order["amount"], order.get("amountReceived", ""), order.get("transactionHash", ""))
  ```
</RequestExample>

<ResponseExample>
  ```json 200 theme={null}
  {
    "success": true,
    "data": [
      {
        "id": "5b3e1f7a-9c2d-4e8b-a1f0-6d4c2b8e9a17",
        "strategyId": "320263ca-2f38-4349-b641-a23aed2ff847",
        "accountTo": "0x1E67cb01969D79B2B895179e4A07D24a839dBb52",
        "amount": 10,
        "amountReceived": 0.00238,
        "executionPrice": 4201.68,
        "status": "successful",
        "transactionHash": "0x9f2c4b1e7a3d5c8f0b6e2a4d1c7f9e3b5a8d0c2e4f6a1b3d5c7e9f0a2b4c6d8e",
        "createdAt": "2026-09-30T12:52:10.004Z",
        "updatedAt": "2026-09-30T12:52:41.377Z"
      }
    ],
    "meta": {
      "requestId": "Edkf_izPoAMEPqg=",
      "version": "v1",
      "accountType": "integrator",
      "apiKeyId": "00000000-0000-4000-8000-000000000000"
    }
  }
  ```

  ```json 404 theme={null}
  {
    "success": false,
    "error": {
      "code": "NOT_FOUND",
      "message": "DCA strategy not found",
      "details": []
    },
    "meta": {
      "requestId": "EdjfJigDIAMEbpw=",
      "version": "v1",
      "accountType": "integrator",
      "apiKeyId": "00000000-0000-4000-8000-000000000000"
    }
  }
  ```

  ```json 403 Gateway theme={null}
  {
    "message": "Forbidden"
  }
  ```
</ResponseExample>


## OpenAPI

````yaml api-reference/openapi.json GET /dca-order/strategies/{id}/orders
openapi: 3.0.3
info:
  title: Olympex REST API
  version: 1.0.0
  description: >-
    Aggregated swap quotes and transactions, limit orders and DCA strategies on
    EVM chains, plus the chain and token catalog. Every response uses the same
    envelope, except the API gateway's own responses (`{"message": …}`): `401`
    or `403` when the signed headers are missing or rejected, `429` when it
    throttles requests, and `500` or `503` when it can't get a response from
    Olympex in time. Chain IDs are integers on every endpoint. Signed endpoints
    require four signed headers; see [Sign
    requests](https://docs.olympex.io/authentication/sign-requests).
  termsOfService: https://docs.olympex.io/legal/terms
  contact:
    name: Olympex partnerships
    email: partners@olympex.io
    url: https://docs.olympex.io
servers:
  - url: https://api-rest.olympex.io/api/v1
    description: Olympex REST API v1
security: []
tags:
  - name: Accounts
    description: Create API credentials.
  - name: Quotes
    description: Aggregated single-chain and cross-chain quotes.
  - name: Swap
    description: Unsigned transaction calldata for a quoted route.
  - name: TxStatus
    description: Track a cross-chain transfer after you broadcast it.
  - name: Transactions
    description: On-chain status of a transaction you broadcast.
  - name: Chains and tokens
    description: Enabled chains and the tokens listed on each.
  - name: Limit orders
    description: Orders that Olympex executes when the market reaches your price.
  - name: DCA
    description: Strategies that buy a token in equal orders over time.
  - name: Docs
    description: Machine-readable API description.
paths:
  /dca-order/strategies/{id}/orders:
    get:
      tags:
        - DCA
      summary: List a strategy's orders
      description: >-
        Returns the orders Olympex has created for one strategy so far, oldest
        first. A new strategy has none until its first order is scheduled. No
        request body: sign the empty string.
      operationId: listDcaStrategyOrders
      parameters:
        - name: id
          in: path
          required: true
          description: Strategy ID, as returned when it was created.
          schema:
            type: string
          example: 320263ca-2f38-4349-b641-a23aed2ff847
      responses:
        '200':
          description: The strategy's orders.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/DcaOrderListSuccessResponse'
              example:
                success: true
                data:
                  - id: 5b3e1f7a-9c2d-4e8b-a1f0-6d4c2b8e9a17
                    strategyId: 320263ca-2f38-4349-b641-a23aed2ff847
                    accountTo: '0x1E67cb01969D79B2B895179e4A07D24a839dBb52'
                    amount: 10
                    amountReceived: 0.00238
                    executionPrice: 4201.68
                    status: successful
                    transactionHash: >-
                      0x9f2c4b1e7a3d5c8f0b6e2a4d1c7f9e3b5a8d0c2e4f6a1b3d5c7e9f0a2b4c6d8e
                    createdAt: '2026-09-30T12:52:10.004Z'
                    updatedAt: '2026-09-30T12:52:41.377Z'
                meta:
                  requestId: Edkf_izPoAMEPqg=
                  version: v1
                  accountType: integrator
                  apiKeyId: 00000000-0000-4000-8000-000000000000
        '401':
          description: >-
            A signing header is missing. The gateway answers with
            `{"message":"Unauthorized"}` before your request reaches Olympex;
            the handler answers with the `UNAUTHORIZED` envelope when the
            authorizer context is missing.
          content:
            application/json:
              schema:
                oneOf:
                  - $ref: '#/components/schemas/GatewayError'
                  - $ref: '#/components/schemas/ErrorResponse'
              example:
                message: Unauthorized
        '403':
          description: >-
            Authentication failed: unknown key, wrong passphrase, invalid
            signature, timestamp outside the ±300 s window, reused nonce, or
            inactive account (gateway `{"message":"Forbidden"}`). The handler
            answers with the `FORBIDDEN` envelope when the signed `bodyHash` is
            not the hash of an empty body.
          content:
            application/json:
              schema:
                oneOf:
                  - $ref: '#/components/schemas/GatewayError'
                  - $ref: '#/components/schemas/ErrorResponse'
              examples:
                gateway:
                  summary: Signature rejected by the gateway
                  value:
                    message: Forbidden
                bodyHash:
                  summary: Body does not match the signed hash
                  value:
                    success: false
                    error:
                      code: FORBIDDEN
                      message: Invalid body hash
                      details: []
                    meta:
                      requestId: ENXGDhsXIAMEMEw=
                      version: v1
                      accountType: integrator
                      apiKeyId: 00000000-0000-4000-8000-000000000000
        '404':
          description: >-
            No DCA strategy with this ID belongs to your API key (`NOT_FOUND`).
            IDs of other API keys return the same error. An unknown path or
            method also returns `NOT_FOUND`, with a message that names the
            method and path.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ErrorResponse'
              examples:
                notFound:
                  summary: Unknown DCA strategy
                  value:
                    success: false
                    error:
                      code: NOT_FOUND
                      message: DCA strategy not found
                      details: []
                    meta:
                      requestId: EdjfJigDIAMEbpw=
                      version: v1
                      accountType: integrator
                      apiKeyId: 00000000-0000-4000-8000-000000000000
                unknownRoute:
                  summary: Unknown path or method
                  value:
                    success: false
                    error:
                      code: NOT_FOUND
                      message: No route for GET /api/v1/quote
                      details: []
                    meta:
                      requestId: E7edogG4IAMEPYA=
                      version: v1
        '500':
          description: >-
            Olympex could not complete the request (`INTERNAL_ERROR`), or the
            gateway could not get a response (`{"message":"Internal Server
            Error"}`), which also happens on the first request after a quiet
            period. Retry with backoff.
          content:
            application/json:
              schema:
                oneOf:
                  - $ref: '#/components/schemas/ErrorResponse'
                  - $ref: '#/components/schemas/GatewayError'
              example:
                success: false
                error:
                  code: INTERNAL_ERROR
                  message: Unexpected internal error
                  details: []
                meta:
                  requestId: Edkf_izPoAMEPqg=
                  version: v1
                  accountType: integrator
                  apiKeyId: 00000000-0000-4000-8000-000000000000
        '503':
          description: >-
            The gateway could not get a response in time (the integration
            timeout is about 30 seconds) or the service is briefly unavailable.
            Returned by the gateway. Retry with backoff.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/GatewayError'
              example:
                message: Service Unavailable
      security:
        - ApiKeyId: []
          ValueInfo: []
          Passphrase: []
          Signature: []
components:
  schemas:
    DcaOrderListSuccessResponse:
      type: object
      required:
        - success
        - data
        - meta
      properties:
        success:
          type: boolean
          enum:
            - true
        data:
          type: array
          items:
            $ref: '#/components/schemas/DcaOrder'
          description: The strategy's orders, oldest first. Unpaginated.
        meta:
          $ref: '#/components/schemas/Meta'
    GatewayError:
      type: object
      required:
        - message
      description: >-
        Returned by the API gateway itself: `401` or `403` when the signed
        headers are missing or rejected, `429` when it throttles requests, and
        `500` or `503` when it can't get a response from Olympex in time. It has
        no `success`, `error` or `meta`.
      properties:
        message:
          type: string
          example: Forbidden
    ErrorResponse:
      type: object
      required:
        - success
        - error
        - meta
      properties:
        success:
          type: boolean
          enum:
            - false
        error:
          $ref: '#/components/schemas/ErrorBody'
        meta:
          $ref: '#/components/schemas/Meta'
    DcaOrder:
      type: object
      description: >-
        One execution of a DCA strategy. Olympex creates these as the strategy
        runs. DCA orders are read-only. Olympex can add fields; ignore the ones
        you don't use.
      required:
        - id
        - strategyId
        - accountTo
        - amount
        - status
        - createdAt
        - updatedAt
      properties:
        id:
          type: string
          description: DCA order ID.
        strategyId:
          type: string
          format: uuid
          description: ID of the strategy the order belongs to.
        accountTo:
          type: string
          description: Maker wallet.
        amount:
          type: number
          description: Amount of the token sold in this order, human-readable.
        amountReceived:
          type: number
          description: >-
            Amount of the token bought, human-readable. Present once the order
            executes.
        executionPrice:
          type: number
          description: >-
            Price the order executed at, in units of the token sold per 1 token
            bought. Present once the order executes.
        status:
          type: string
          enum:
            - pending
            - executing
            - successful
            - cancelled
            - error
            - expired
          description: >-
            `pending`: scheduled. `executing`: in progress. `successful`:
            executed, see `transactionHash`. `cancelled`: skipped. `error`:
            failed, see `errorMessage`. `expired`: not executed in time. Treat
            any other value as not final.
        errorMessage:
          type: string
          description: Why the order failed. Present when `status` is `error`.
        transactionHash:
          type: string
          description: Execution transaction hash. Present once the order executes.
        createdAt:
          type: string
          format: date-time
          description: When Olympex created the order (ISO 8601, UTC).
        updatedAt:
          type: string
          format: date-time
          description: When the order last changed (ISO 8601, UTC).
        deletedAt:
          type: string
          format: date-time
          description: Absent unless the order was deleted by Olympex.
    Meta:
      type: object
      required:
        - requestId
        - version
      properties:
        requestId:
          type: string
          description: Unique ID for this request. Include it when you contact support.
        version:
          type: string
          default: v1
          description: API version that served the request.
        accountType:
          type: string
          description: >-
            Account type resolved by the signature check, for example
            `integrator`. Present when the request was authenticated; absent on
            the `404` for an unknown path or method.
        apiKeyId:
          type: string
          format: uuid
          description: >-
            The API key ID that signed the request. Present when the request was
            authenticated; absent on the `404` for an unknown path or method.
    ErrorBody:
      type: object
      required:
        - code
        - message
        - details
      properties:
        code:
          type: string
          description: >-
            Machine-readable error code. `VALIDATION_ERROR` (400),
            `UNAUTHORIZED` (401), `FORBIDDEN` (403), `NOT_FOUND` (404, also for
            an unknown path or method), `CONFLICT` (409), `NO_ROUTE` (422), and
            for 500: `QUOTE_ERROR`, `CROSS_CHAIN_QUOTE_ERROR`, `SWAP_ERROR`,
            `CROSS_CHAIN_SWAP_ERROR`, `SUPPORT_CHAIN_ERROR`,
            `ENABLED_CHAINS_ERROR`, `TOKEN_LIST_ERROR`, `TX_STATUS_ERROR`,
            `INTERNAL_ERROR`. Olympex can add codes: handle an unknown code by
            its HTTP status.
        message:
          type: string
          description: Human-readable summary. Don't parse it.
        details:
          type: array
          items:
            $ref: '#/components/schemas/ErrorDetail'
    ErrorDetail:
      type: object
      additionalProperties: true
      description: >-
        Validation errors carry `field` and `message`; other errors carry
        `message` only.
      properties:
        field:
          type: string
          description: >-
            Dot path of the invalid field, for example `params.chainId`. Empty
            for the top level.
        message:
          type: string
  securitySchemes:
    ApiKeyId:
      type: apiKey
      in: header
      name: x-api-key-id
      description: >-
        Your API key ID (UUID). See [Sign
        requests](https://docs.olympex.io/authentication/sign-requests).
    ValueInfo:
      type: apiKey
      in: header
      name: x-value-info
      description: >-
        Base64 of `timestamp + "\n" + nonce + "\n" + bodyHash`, where
        `timestamp` is Unix seconds, `nonce` is 24 new hexadecimal characters
        and `bodyHash` is the unpadded base64url SHA-256 of the canonical body.
    Passphrase:
      type: apiKey
      in: header
      name: x-passphrase
      description: Your account passphrase. Treat it like the secret key.
    Signature:
      type: apiKey
      in: header
      name: x-signature
      description: >-
        Lowercase hex HMAC-SHA256 (signature v2), keyed with your secret key
        string (UTF-8, not decoded), of seven lines joined with `\n`, with no
        trailing newline: `OLPX-HMAC-SHA256-V2`, `timestamp`, `nonce`, the
        uppercase method, `path`, `canonicalQuery` and `bodyHash`. `path` is the
        request path including `/api/v1`, without the query string, for example
        `/api/v1/limit-order/<id>`. `canonicalQuery` is the query parameters
        decoded (`+` is a space), sorted by key and then by value, re-encoded
        per RFC 3986 and joined with `&`, or the empty string when there is no
        query. Headers signed for one request are rejected on any other. See
        [Sign requests](https://docs.olympex.io/authentication/sign-requests).

````

This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.