Was hoping they'd just have an api you could check against, maybe op could do that pretty easily since the frontend is already making a request.
Yes you can definitely do that. The /validate endpoint accepts the parameters application (for the application uuid) and the key (for licence key). You can program your way around that, but the one line solution then does not hold up.